A voir également:
- Pb sous mozilla
- Downloadhelper mozilla - Télécharger - Outils pour navigateurs
- Mozilla firefox - Télécharger - Navigateurs
- Mozilla thunderbird - Télécharger - Mail
- Mozilla sunbird - Télécharger - Agendas & Calendriers
- Mozilla backup - Télécharger - Sauvegarde
48 réponses
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent(car il est detecté a tort comme infection)
▶ Télécharge et installe List&Kill'em et enregistre le sur ton bureau
double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation
coche la case "creer une icone sur le bureau"
une fois terminée , clic sur "terminer" et le programme se lancera seul
choisis la langue puis choisis l'option 1 = Mode Recherche
▶ laisse travailler l'outil
à l'apparition de la fenetre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.
un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.
▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"
tu peux supprimer le rapport catchme.log de ton bureau maintenant.
▶ Télécharge et installe List&Kill'em et enregistre le sur ton bureau
double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation
coche la case "creer une icone sur le bureau"
une fois terminée , clic sur "terminer" et le programme se lancera seul
choisis la langue puis choisis l'option 1 = Mode Recherche
▶ laisse travailler l'outil
à l'apparition de la fenetre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.
un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.
▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"
tu peux supprimer le rapport catchme.log de ton bureau maintenant.
List'em by g3n-h@ckm@n 1.1.7.0
Thx to Chiquitine29.....& CCM team
User : SYLVIE (Administrateurs) # SAMSUNG-F892200
Update on 30/12/2009 by g3n-h@ckm@n ::::: 23:45
Start at: 11:52:57 | 31/12/2009
Contact : g3n-h@ckm@n sur CCM
Genuine Intel(R) CPU T2250 @ 1.73GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 6.0.2900.5512
Windows Firewall Status : Disabled
AV : Bitdefender Antivirus 8.0 [ (!) Disabled | Updated ]
FW : Bitdefender Firewall[ (!) Disabled ]8.0
C:\ -> Disque fixe local | 86,05 Go (47,01 Go free) | NTFS
D:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
C:\Program Files\Samsung\DisplayManager\DisplayManager.exe
C:\Program Files\Samsung\DisplayManager\dmhkcore.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\SAMSUNG\MagicKBD\MagicKBD.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Documents and Settings\SYLVIE\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\List_Kill'em\List_Kill'em.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Documents and Settings\SYLVIE\Local Settings\Temp\219.tmp\pv.exe
======================
Keys "Run"
======================
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
CTFMON.EXE REG_SZ C:\WINDOWS\system32\ctfmon.exe
msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
LDM REG_SZ C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
ATICCC REG_SZ "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
RTHDCPL REG_SZ RTHDCPL.EXE
Alcmtr REG_SZ ALCMTR.EXE
<NO NAME> REG_SZ
EDS REG_SZ C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
AGRSMMSG REG_SZ AGRSMMSG.exe
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
RemoteControl REG_SZ "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
B'sCLiP REG_SZ C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
MagicKeyboard REG_SZ C:\Program Files\SAMSUNG\MagicKBD\PreMKBD.exe
BatteryManager REG_SZ C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
DMHotKey REG_SZ C:\Program Files\Samsung\DisplayManager\DMLoader.exe
DisplayManager REG_SZ C:\Program Files\Samsung\DisplayManager\DisplayManager.exe
SSBkgdUpdate REG_SZ "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
PaperPort PTD REG_SZ C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
IndexSearch REG_SZ C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
BrMfcWnd REG_SZ C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
SetDefPrt REG_SZ C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe
ControlCenter3 REG_SZ C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
Adobe Photo Downloader REG_SZ "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
fssui REG_SZ "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
BitDefender Antiphishing Helper REG_SZ "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
BDAgent REG_SZ "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
LogitechCommunicationsManager REG_SZ "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
LogitechQuickCamRibbon REG_SZ "C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" /hide
Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
Adobe ARM REG_SZ "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
TkBellExe REG_SZ "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
=====================
Other Keys
=====================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
dontdisplaylastusername REG_DWORD 0 (0x0)
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
shutdownwithoutlogon REG_DWORD 1 (0x1)
undockwithoutlogon REG_DWORD 1 (0x1)
===============
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
NoDriveTypeAutoRun REG_DWORD 128 (0x80)
NoDriveAutoRun REG_DWORD 128 (0x80)
HonorAutoRunSetting REG_DWORD 0 (0x0)
===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
HonorAutoRunSetting REG_DWORD 0 (0x0)
NoDriveAutoRun REG_DWORD 128 (0x80)
NoDriveTypeAutoRun REG_DWORD 128 (0x80)
===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS REG_SZ
===============
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\crypt32chain]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cscdll]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\dimsntfy]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ScCertProp]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Schedule]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\sclgntfy]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\SensLogn]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\termsrv]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WgaLogon]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wlballoon]
===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
{AEB6717E-7E19-11d0-97EE-00C04FD91972} REG_SZ
===============
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
%windir%\system32\sessmgr.exe REG_SZ %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
C:\WINDOWS\system32\dpvsetup.exe REG_SZ C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test
C:\Program Files\Internet Explorer\IEXPLORE.EXE REG_SZ C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer
C:\Program Files\Messenger\msmsgs.exe REG_SZ C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger
%windir%\Network Diagnostic\xpnetdiag.exe REG_SZ %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
C:\Program Files\Skype\Phone\Skype.exe REG_SZ C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe REG_SZ C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe
C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe REG_SZ C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe REG_SZ C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe
C:\Program Files\Windows Live\Messenger\wlcsdk.exe REG_SZ C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe REG_SZ C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger
C:\Program Files\Windows Live\Messenger\msnmsgr.exe REG_SZ C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe REG_SZ C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
%windir%\system32\sessmgr.exe REG_SZ %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
%windir%\Network Diagnostic\xpnetdiag.exe REG_SZ %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
C:\Program Files\Windows Live\Messenger\wlcsdk.exe REG_SZ C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe REG_SZ C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger
C:\Program Files\Windows Live\Messenger\msnmsgr.exe REG_SZ C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe REG_SZ C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare
===============
controles ActivX
===============
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8AD9C840-044E-11D1-B3E9-00805F499D93}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
===============
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{DFB17AA8-042A-429D-987C-26CE244A4189}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10072CEC-8CC1-11D1-986E-00A0C955B42F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{233C1507-6A77-46A4-9443-F871F945D258}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{283807B5-2C60-11D0-A31D-00AA00B92C03}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2A202491-F00D-11cf-87CC-0020AFEECF20}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{36f8ec70-c29a-11d1-b5c7-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3bf42070-b3b1-11d1-b5c5-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4278c270-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f216970-c90c-11d1-b5c7-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5056b317-8d4c-43ee-8543-b9d1e234b8f4}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5945c046-1e7d-11d1-bc44-00c04fd912be}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5A8D6EE0-3E18-11D0-821E-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CC2A9BA0-3BDD-11D0-821E-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11cf-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}
==============
BHO :
======
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
================
Internet Explorer :
================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr
========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]
Ndisuio : 0x3
EapHost : 0x3
SharedAccess : 0x2
wuauserv : 0x2
=========
=======
Drive :
=======
D‚fragmenteur de disque Windows
Copyright (c) 2001 Microsoft Corp. et Executive Software International Inc.
Rapport d'analyse
86,05 Go total, 47,01 Go libre (54%), 1% fragment‚ (fragmentation du fichier 2%)
Il ne vous est pas n‚cessaire de d‚fragmenter ce volume.
¤¤¤¤¤¤¤¤¤¤ Files/folders :
C:\WINDOWS\System32\_004487_.tmp.dll
C:\WINDOWS\System32\_004488_.tmp.dll
C:\WINDOWS\System32\_004489_.tmp.dll
C:\WINDOWS\System32\_004490_.tmp.dll
C:\WINDOWS\System32\_004496_.tmp.dll
C:\WINDOWS\System32\_004497_.tmp.dll
C:\WINDOWS\System32\_004498_.tmp.dll
C:\WINDOWS\System32\_004499_.tmp.dll
C:\WINDOWS\System32\_004500_.tmp.dll
C:\WINDOWS\System32\_004501_.tmp.dll
C:\WINDOWS\System32\_004502_.tmp.dll
C:\WINDOWS\System32\_004503_.tmp.dll
C:\WINDOWS\System32\_004504_.tmp.dll
C:\WINDOWS\System32\_004505_.tmp.dll
C:\WINDOWS\System32\_004506_.tmp.dll
C:\WINDOWS\System32\_004507_.tmp.dll
C:\WINDOWS\System32\_004510_.tmp.dll
C:\WINDOWS\System32\_004511_.tmp.dll
C:\WINDOWS\System32\_004513_.tmp.dll
C:\WINDOWS\System32\_004516_.tmp.dll
C:\WINDOWS\System32\_004517_.tmp.dll
C:\WINDOWS\System32\_004519_.tmp.dll
C:\WINDOWS\System32\_004520_.tmp.dll
C:\WINDOWS\System32\_004521_.tmp.dll
C:\WINDOWS\System32\_004522_.tmp.dll
C:\WINDOWS\System32\_004524_.tmp.dll
C:\WINDOWS\System32\_004525_.tmp.dll
C:\WINDOWS\System32\_004526_.tmp.dll
C:\WINDOWS\System32\_004527_.tmp.dll
C:\WINDOWS\System32\_004529_.tmp.dll
C:\WINDOWS\System32\_004530_.tmp.dll
C:\WINDOWS\System32\_004531_.tmp.dll
C:\WINDOWS\System32\_004532_.tmp.dll
C:\WINDOWS\System32\_004533_.tmp.dll
C:\WINDOWS\System32\_004535_.tmp.dll
C:\WINDOWS\System32\_004536_.tmp.dll
C:\WINDOWS\System32\_004537_.tmp.dll
C:\WINDOWS\System32\_004538_.tmp.dll
C:\WINDOWS\System32\_004539_.tmp.dll
C:\WINDOWS\System32\_004540_.tmp.dll
C:\WINDOWS\System32\_004541_.tmp.dll
C:\WINDOWS\System32\_004544_.tmp.dll
C:\WINDOWS\System32\_004545_.tmp.dll
C:\WINDOWS\System32\_004546_.tmp.dll
C:\WINDOWS\System32\_004548_.tmp.dll
C:\WINDOWS\System32\_004551_.tmp.dll
C:\WINDOWS\System32\_004552_.tmp.dll
C:\WINDOWS\System32\_004557_.tmp.dll
C:\WINDOWS\System32\_004559_.tmp.dll
C:\WINDOWS\System32\_004562_.tmp.dll
C:\WINDOWS\System32\_004564_.tmp.dll
C:\WINDOWS\System32\_004565_.tmp.dll
C:\WINDOWS\System32\_004566_.tmp.dll
C:\WINDOWS\System32\_004567_.tmp.dll
C:\WINDOWS\System32\_004570_.tmp.dll
C:\WINDOWS\System32\_004571_.tmp.dll
C:\WINDOWS\System32\_004572_.tmp.dll
C:\WINDOWS\System32\_004573_.tmp.dll
C:\WINDOWS\System32\_004574_.tmp.dll
C:\WINDOWS\System32\_004579_.tmp.dll
C:\WINDOWS\System32\drivers\_004462_.tmp.dll
C:\WINDOWS\System32\drivers\_004471_.tmp.dll
C:\WINDOWS\System32\drivers\etc\hosts.msn
C:\WINDOWS\System32\SET12CD.tmp
C:\WINDOWS\System32\SET12D0.tmp
C:\WINDOWS\System32\SET12D5.tmp
C:\WINDOWS\System32\SET12DA.tmp
C:\WINDOWS\System32\SET12DE.tmp
C:\WINDOWS\System32\SET12E5.tmp
C:\WINDOWS\System32\SET12E8.tmp
C:\WINDOWS\System32\SET12F8.tmp
C:\WINDOWS\System32\SET12FB.tmp
C:\WINDOWS\System32\SET1300.tmp
C:\WINDOWS\System32\SET1305.tmp
C:\WINDOWS\System32\SET1306.tmp
C:\WINDOWS\System32\SET130A.tmp
C:\WINDOWS\System32\SET1311.tmp
C:\WINDOWS\System32\SET1314.tmp
C:\WINDOWS\System32\SET1315.tmp
C:\WINDOWS\System32\SET1331.tmp
C:\WINDOWS\System32\SET1336.tmp
C:\WINDOWS\System32\SET133D.tmp
C:\WINDOWS\System32\SET134B.tmp
C:\WINDOWS\System32\SET1365.tmp
C:\WINDOWS\System32\SET136C.tmp
C:\WINDOWS\System32\SET137A.tmp
C:\WINDOWS\System32\SET228.tmp
C:\WINDOWS\System32\SET229.tmp
C:\WINDOWS\System32\SET22A.tmp
C:\WINDOWS\System32\SET22C.tmp
C:\WINDOWS\System32\SET22E.tmp
C:\WINDOWS\System32\SET230.tmp
C:\WINDOWS\System32\SET237.tmp
C:\WINDOWS\System32\SET238.tmp
C:\WINDOWS\System32\SET23B.tmp
C:\WINDOWS\System32\SET240.tmp
C:\WINDOWS\System32\SET241.tmp
C:\WINDOWS\System32\SET242.tmp
C:\WINDOWS\System32\SET244.tmp
C:\WINDOWS\System32\SET245.tmp
C:\WINDOWS\System32\SET246.tmp
C:\WINDOWS\System32\SET247.tmp
C:\WINDOWS\System32\SET248.tmp
C:\WINDOWS\System32\SET24A.tmp
C:\WINDOWS\System32\SET24B.tmp
C:\WINDOWS\System32\SET24C.tmp
C:\WINDOWS\System32\SET24D.tmp
C:\WINDOWS\System32\SET250.tmp
C:\WINDOWS\System32\SET257.tmp
C:\WINDOWS\System32\SET258.tmp
C:\WINDOWS\System32\SET259.tmp
C:\WINDOWS\System32\SET25A.tmp
C:\WINDOWS\System32\SET25D.tmp
C:\WINDOWS\System32\SET25F.tmp
C:\WINDOWS\System32\SET260.tmp
C:\WINDOWS\System32\SET267.tmp
C:\WINDOWS\System32\SET26A.tmp
C:\WINDOWS\System32\SET26B.tmp
C:\WINDOWS\System32\SET26D.tmp
C:\WINDOWS\System32\SET26E.tmp
C:\WINDOWS\System32\SET26F.tmp
C:\WINDOWS\System32\SET274.tmp
C:\WINDOWS\System32\SET275.tmp
C:\WINDOWS\System32\SET276.tmp
C:\WINDOWS\System32\SET277.tmp
C:\WINDOWS\System32\SET278.tmp
C:\WINDOWS\System32\SET27E.tmp
C:\WINDOWS\System32\SET283.tmp
C:\WINDOWS\System32\SET284.tmp
C:\WINDOWS\System32\SET288.tmp
C:\WINDOWS\System32\SET28C.tmp
C:\WINDOWS\System32\SET293.tmp
C:\WINDOWS\System32\SET294.tmp
C:\WINDOWS\System32\SET296.tmp
C:\WINDOWS\System32\SET299.tmp
C:\WINDOWS\System32\SET29A.tmp
C:\WINDOWS\System32\SET2A3.tmp
C:\WINDOWS\System32\SET2A4.tmp
C:\WINDOWS\System32\SET2A7.tmp
C:\WINDOWS\System32\SET2A9.tmp
C:\WINDOWS\System32\SET2AA.tmp
C:\WINDOWS\System32\SET2AB.tmp
C:\WINDOWS\System32\SET2AC.tmp
C:\WINDOWS\System32\SET2AD.tmp
C:\WINDOWS\System32\SET2BD.tmp
C:\WINDOWS\System32\SET2C2.tmp
C:\WINDOWS\System32\SET2C4.tmp
C:\WINDOWS\System32\SET2C6.tmp
C:\WINDOWS\System32\SET2C7.tmp
C:\WINDOWS\System32\SET2C8.tmp
C:\WINDOWS\System32\SET2CB.tmp
C:\WINDOWS\System32\SET2CC.tmp
C:\WINDOWS\System32\SET2D0.tmp
C:\WINDOWS\System32\SET2D1.tmp
C:\WINDOWS\System32\SET2D4.tmp
C:\WINDOWS\System32\SET2D5.tmp
C:\WINDOWS\System32\SET2D6.tmp
C:\WINDOWS\System32\SET2DB.tmp
C:\WINDOWS\System32\SET2DC.tmp
C:\WINDOWS\System32\SET2DE.tmp
C:\WINDOWS\System32\SET2DF.tmp
C:\WINDOWS\System32\SET2E0.tmp
C:\WINDOWS\System32\SET2E1.tmp
C:\WINDOWS\System32\SET2E2.tmp
C:\WINDOWS\System32\SET2E3.tmp
C:\WINDOWS\System32\SET2E9.tmp
C:\WINDOWS\System32\SET2EA.tmp
C:\WINDOWS\System32\SET2EC.tmp
C:\WINDOWS\System32\SET2ED.tmp
C:\WINDOWS\System32\SET2EE.tmp
C:\WINDOWS\System32\SET2F2.tmp
C:\WINDOWS\System32\SET2F3.tmp
C:\WINDOWS\System32\SET2F4.tmp
C:\WINDOWS\System32\SET2F6.tmp
C:\WINDOWS\System32\SET2F7.tmp
C:\WINDOWS\System32\SET2F8.tmp
C:\WINDOWS\System32\SET2F9.tmp
C:\WINDOWS\System32\SET2FA.tmp
C:\WINDOWS\System32\SET2FC.tmp
C:\WINDOWS\System32\SET2FD.tmp
C:\WINDOWS\System32\SET2FE.tmp
C:\WINDOWS\System32\SET2FF.tmp
C:\WINDOWS\System32\SET300.tmp
C:\WINDOWS\System32\SET301.tmp
C:\WINDOWS\System32\SET302.tmp
C:\WINDOWS\System32\SET303.tmp
C:\WINDOWS\System32\SET304.tmp
C:\WINDOWS\System32\SET306.tmp
C:\WINDOWS\System32\SET309.tmp
C:\WINDOWS\System32\SET30A.tmp
C:\WINDOWS\System32\SET30B.tmp
C:\WINDOWS\System32\SET30C.tmp
C:\WINDOWS\System32\SET30F.tmp
C:\WINDOWS\System32\SET310.tmp
C:\WINDOWS\System32\SET311.tmp
C:\WINDOWS\System32\SET312.tmp
C:\WINDOWS\System32\SET313.tmp
C:\WINDOWS\System32\SET319.tmp
C:\WINDOWS\System32\SET31A.tmp
C:\WINDOWS\System32\SET31B.tmp
C:\WINDOWS\System32\SET31C.tmp
C:\WINDOWS\System32\SET31D.tmp
C:\WINDOWS\System32\SET31F.tmp
C:\WINDOWS\System32\SET320.tmp
C:\WINDOWS\System32\SET321.tmp
C:\WINDOWS\System32\SET326.tmp
C:\WINDOWS\System32\SET327.tmp
C:\WINDOWS\System32\SET328.tmp
C:\WINDOWS\System32\SET329.tmp
C:\WINDOWS\System32\SET32A.tmp
C:\WINDOWS\System32\SET32B.tmp
C:\WINDOWS\System32\SET330.tmp
C:\WINDOWS\System32\SET331.tmp
C:\WINDOWS\System32\SET332.tmp
C:\WINDOWS\System32\SET335.tmp
C:\WINDOWS\System32\SET336.tmp
C:\WINDOWS\System32\SET339.tmp
C:\WINDOWS\System32\SET33A.tmp
C:\WINDOWS\System32\SET33E.tmp
C:\WINDOWS\System32\SET340.tmp
C:\WINDOWS\System32\SET341.tmp
C:\WINDOWS\System32\SET343.tmp
C:\WINDOWS\System32\SET344.tmp
C:\WINDOWS\System32\SET345.tmp
C:\WINDOWS\System32\SET346.tmp
C:\WINDOWS\System32\SET348.tmp
C:\WINDOWS\System32\SET34A.tmp
C:\WINDOWS\System32\SET34B.tmp
C:\WINDOWS\System32\SET34C.tmp
C:\WINDOWS\System32\SET34E.tmp
C:\WINDOWS\System32\SET351.tmp
C:\WINDOWS\System32\SET352.tmp
C:\WINDOWS\System32\SET355.tmp
C:\WINDOWS\System32\SET356.tmp
C:\WINDOWS\System32\SET358.tmp
C:\WINDOWS\System32\SET359.tmp
C:\WINDOWS\System32\SET35B.tmp
C:\WINDOWS\System32\SET35C.tmp
C:\WINDOWS\System32\SET35D.tmp
C:\WINDOWS\System32\SET35E.tmp
C:\WINDOWS\System32\SET35F.tmp
C:\WINDOWS\System32\SET364.tmp
C:\WINDOWS\System32\SET365.tmp
C:\WINDOWS\System32\SET366.tmp
C:\WINDOWS\System32\SET369.tmp
C:\WINDOWS\System32\SET36A.tmp
C:\WINDOWS\System32\SET36B.tmp
C:\WINDOWS\System32\SET36C.tmp
C:\WINDOWS\System32\SET36D.tmp
C:\WINDOWS\System32\SET36F.tmp
C:\WINDOWS\System32\SET374.tmp
C:\WINDOWS\System32\SET376.tmp
C:\WINDOWS\System32\SET377.tmp
C:\WINDOWS\System32\SET378.tmp
C:\WINDOWS\System32\SET379.tmp
C:\WINDOWS\System32\SET37A.tmp
C:\WINDOWS\System32\SET37B.tmp
C:\WINDOWS\System32\SET37D.tmp
C:\WINDOWS\System32\SET37E.tmp
C:\WINDOWS\System32\SET380.tmp
C:\WINDOWS\System32\SET381.tmp
C:\WINDOWS\System32\SET382.tmp
C:\WINDOWS\System32\SET383.tmp
C:\WINDOWS\System32\SET384.tmp
C:\WINDOWS\System32\SET385.tmp
C:\WINDOWS\System32\SET386.tmp
C:\WINDOWS\System32\SET387.tmp
C:\WINDOWS\System32\SET388.tmp
C:\WINDOWS\System32\SET389.tmp
C:\WINDOWS\System32\SET38B.tmp
C:\WINDOWS\System32\SET38C.tmp
C:\WINDOWS\System32\SET38D.tmp
C:\WINDOWS\System32\SET38E.tmp
C:\WINDOWS\System32\SET38F.tmp
C:\WINDOWS\System32\SET390.tmp
C:\WINDOWS\System32\SET392.tmp
C:\WINDOWS\System32\SET393.tmp
C:\WINDOWS\System32\SET394.tmp
C:\WINDOWS\System32\SET397.tmp
C:\WINDOWS\System32\SET398.tmp
C:\WINDOWS\System32\SET39B.tmp
C:\WINDOWS\System32\SET39E.tmp
C:\WINDOWS\System32\SET39F.tmp
C:\WINDOWS\System32\SET3A0.tmp
C:\WINDOWS\System32\SET3A1.tmp
C:\WINDOWS\System32\SET3A3.tmp
C:\WINDOWS\System32\SET3A5.tmp
C:\WINDOWS\System32\SET3A6.tmp
C:\WINDOWS\System32\SET3A7.tmp
C:\WINDOWS\System32\SET3A8.tmp
C:\WINDOWS\System32\SET3A9.tmp
C:\WINDOWS\System32\SET3AE.tmp
C:\WINDOWS\System32\SET3AF.tmp
C:\WINDOWS\System32\SET3B0.tmp
C:\WINDOWS\System32\SET3B1.tmp
C:\WINDOWS\System32\SET3B3.tmp
C:\WINDOWS\System32\SET3B5.tmp
C:\WINDOWS\System32\SET3B7.tmp
C:\WINDOWS\System32\SET3B9.tmp
C:\WINDOWS\System32\SET3BA.tmp
C:\WINDOWS\System32\SET3BB.tmp
C:\WINDOWS\System32\SET3BC.tmp
C:\WINDOWS\System32\SET3C0.tmp
C:\WINDOWS\System32\SET3C6.tmp
C:\WINDOWS\System32\SET3C7.tmp
C:\WINDOWS\System32\SET3C8.tmp
C:\WINDOWS\System32\SET3C9.tmp
C:\WINDOWS\System32\SET3CA.tmp
C:\WINDOWS\System32\SET3CC.tmp
C:\WINDOWS\System32\SET3CE.tmp
C:\WINDOWS\System32\SET3D2.tmp
C:\WINDOWS\System32\SET3D4.tmp
C:\WINDOWS\System32\SET3D6.tmp
C:\WINDOWS\System32\SET3D9.tmp
C:\WINDOWS\System32\SET3DF.tmp
C:\WINDOWS\System32\SET3E0.tmp
C:\WINDOWS\System32\SET3E1.tmp
C:\WINDOWS\System32\SET3E3.tmp
C:\WINDOWS\System32\SET3E4.tmp
C:\WINDOWS\System32\SET3E5.tmp
C:\WINDOWS\System32\SET3E7.tmp
C:\WINDOWS\System32\SET3E8.tmp
C:\WINDOWS\System32\SET3EC.tmp
C:\WINDOWS\System32\SET3ED.tmp
C:\WINDOWS\System32\SET3F0.tmp
C:\WINDOWS\System32\SET3F1.tmp
C:\WINDOWS\System32\SET3F2.tmp
C:\WINDOWS\System32\SET3F3.tmp
C:\WINDOWS\System32\SET3F4.tmp
C:\WINDOWS\System32\SET3F6.tmp
C:\WINDOWS\System32\SET3F7.tmp
C:\WINDOWS\System32\SET3F8.tmp
C:\WINDOWS\System32\SET3FA.tmp
C:\WINDOWS\System32\SET3FB.tmp
C:\WINDOWS\System32\SET3FC.tmp
C:\WINDOWS\System32\SET3FD.tmp
C:\WINDOWS\System32\SET3FE.tmp
C:\WINDOWS\System32\SET3FF.tmp
C:\WINDOWS\System32\SET401.tmp
C:\WINDOWS\System32\SET402.tmp
C:\WINDOWS\System32\SET403.tmp
C:\WINDOWS\System32\SET407.tmp
C:\WINDOWS\System32\SET408.tmp
C:\WINDOWS\System32\SET409.tmp
C:\WINDOWS\System32\SET40B.tmp
C:\WINDOWS\System32\SET40D.tmp
C:\WINDOWS\System32\SET40E.tmp
C:\WINDOWS\System32\SET40F.tmp
C:\WINDOWS\System32\SET410.tmp
C:\WINDOWS\System32\SET411.tmp
C:\WINDOWS\System32\SET412.tmp
C:\WINDOWS\System32\SET413.tmp
C:\WINDOWS\System32\SET414.tmp
C:\WINDOWS\System32\SET415.tmp
C:\WINDOWS\System32\SET417.tmp
C:\WINDOWS\System32\SET418.tmp
C:\WINDOWS\System32\SET419.tmp
C:\WINDOWS\System32\SET41B.tmp
C:\WINDOWS\System32\SET41C.tmp
C:\WINDOWS\System32\SET420.tmp
C:\WINDOWS\System32\SET422.tmp
C:\WINDOWS\System32\SET423.tmp
C:\WINDOWS\System32\SET426.tmp
C:\WINDOWS\System32\SET42A.tmp
C:\WINDOWS\System32\SET42E.tmp
C:\WINDOWS\System32\SET430.tmp
C:\WINDOWS\System32\SET432.tmp
C:\WINDOWS\System32\SET434.tmp
C:\WINDOWS\System32\SET435.tmp
C:\WINDOWS\System32\SET436.tmp
C:\WINDOWS\System32\SET437.tmp
C:\WINDOWS\System32\SET438.tmp
C:\WINDOWS\System32\SET439.tmp
C:\WINDOWS\System32\SET43A.tmp
C:\WINDOWS\System32\SET43C.tmp
C:\WINDOWS\System32\SET43E.tmp
C:\WINDOWS\System32\SET441.tmp
C:\WINDOWS\System32\SET442.tmp
C:\WINDOWS\System32\SET444.tmp
C:\WINDOWS\System32\SET445.tmp
C:\WINDOWS\System32\SET447.tmp
C:\WINDOWS\System32\SET449.tmp
C:\WINDOWS\System32\SET44A.tmp
C:\WINDOWS\System32\SET44B.tmp
C:\WINDOWS\System32\SET44C.tmp
C:\WINDOWS\System32\SET44D.tmp
C:\WINDOWS\System32\SET44E.tmp
C:\WINDOWS\System32\SET44F.tmp
C:\WINDOWS\System32\SET451.tmp
C:\WINDOWS\System32\SET453.tmp
C:\WINDOWS\System32\SET457.tmp
C:\WINDOWS\System32\SET459.tmp
C:\WINDOWS\System32\SET45B.tmp
C:\WINDOWS\System32\SET463.tmp
C:\WINDOWS\System32\SET465.tmp
C:\WINDOWS\System32\SET467.tmp
C:\WINDOWS\System32\SET468.tmp
C:\WINDOWS\System32\SET469.tmp
C:\WINDOWS\System32\SET46A.tmp
C:\WINDOWS\System32\SET46B.tmp
C:\WINDOWS\System32\SET46D.tmp
C:\WINDOWS\System32\SET46F.tmp
C:\WINDOWS\System32\SET470.tmp
C:\WINDOWS\System32\SET471.tmp
C:\WINDOWS\System32\SET472.tmp
C:\WINDOWS\System32\SET474.tmp
C:\WINDOWS\System32\SET475.tmp
C:\WINDOWS\System32\SET477.tmp
C:\WINDOWS\System32\SET47C.tmp
C:\WINDOWS\System32\SET480.tmp
C:\WINDOWS\System32\SET487.tmp
C:\WINDOWS\System32\SET488.tmp
C:\WINDOWS\System32\SET48A.tmp
C:\WINDOWS\System32\SET48B.tmp
C:\WINDOWS\System32\SET48C.tmp
C:\WINDOWS\System32\SET48D.tmp
C:\WINDOWS\System32\SET48F.tmp
C:\WINDOWS\System32\SET493.tmp
C:\WINDOWS\System32\SET497.tmp
C:\WINDOWS\System32\SET498.tmp
C:\WINDOWS\System32\SET49E.tmp
C:\WINDOWS\System32\SET4A0.tmp
C:\WINDOWS\System32\SET4A5.tmp
C:\WINDOWS\System32\SET4A9.tmp
C:\WINDOWS\System32\SET4AF.tmp
C:\WINDOWS\System32\SET4B3.tmp
C:\WINDOWS\System32\SET4B5.tmp
C:\WINDOWS\System32\SET4BC.tmp
C:\WINDOWS\System32\SET4BF.tmp
C:\WINDOWS\System32\SET4C0.tmp
C:\WINDOWS\System32\SET4C2.tmp
C:\WINDOWS\System32\SET4C6.tmp
C:\WINDOWS\System32\SET4CB.tmp
C:\WINDOWS\System32\SET4D0.tmp
C:\WINDOWS\System32\SET4DE.tmp
C:\WINDOWS\System32\SET4E4.tmp
C:\WINDOWS\System32\SET4E6.tmp
C:\WINDOWS\System32\SET4E8.tmp
C:\WINDOWS\System32\SET4EA.tmp
C:\WINDOWS\System32\SET4EC.tmp
C:\WINDOWS\System32\SET4EF.tmp
C:\WINDOWS\System32\SET4F1.tmp
C:\WINDOWS\System32\SET4F5.tmp
C:\WINDOWS\System32\SET4F9.tmp
C:\WINDOWS\System32\SET504.tmp
C:\WINDOWS\System32\SET506.tmp
C:\WINDOWS\System32\SET507.tmp
C:\WINDOWS\System32\SET508.tmp
C:\WINDOWS\System32\SET509.tmp
C:\WINDOWS\System32\SET50A.tmp
C:\WINDOWS\System32\SET50B.tmp
C:\WINDOWS\System32\SET50C.tmp
C:\WINDOWS\System32\SET516.tmp
C:\WINDOWS\System32\SET519.tmp
C:\WINDOWS\System32\SET51B.tmp
C:\WINDOWS\System32\SET51E.tmp
C:\WINDOWS\System32\SET521.tmp
C:\WINDOWS\System32\SET524.tmp
C:\WINDOWS\System32\SET528.tmp
C:\WINDOWS\System32\SET534.tmp
C:\WINDOWS\System32\SET535.tmp
C:\WINDOWS\System32\SET53A.tmp
C:\WINDOWS\System32\SET53B.tmp
C:\WINDOWS\System32\SET53C.tmp
C:\WINDOWS\System32\SET541.tmp
C:\WINDOWS\System32\SET554.tmp
C:\WINDOWS\System32\SET55C.tmp
C:\WINDOWS\System32\SET55F.tmp
C:\WINDOWS\System32\SET561.tmp
C:\WINDOWS\System32\SET568.tmp
C:\WINDOWS\System32\SET569.tmp
C:\WINDOWS\System32\SET56A.tmp
C:\WINDOWS\System32\SET56C.tmp
C:\WINDOWS\System32\SET56D.tmp
C:\WINDOWS\System32\SET56E.tmp
C:\WINDOWS\System32\SET56F.tmp
C:\WINDOWS\System32\SET571.tmp
C:\WINDOWS\System32\SET572.tmp
C:\WINDOWS\System32\SET573.tmp
C:\WINDOWS\System32\SET574.tmp
C:\WINDOWS\System32\SET576.tmp
C:\WINDOWS\System32\SET579.tmp
C:\WINDOWS\System32\SET57B.tmp
C:\WINDOWS\System32\SET57E.tmp
C:\WINDOWS\System32\SET57F.tmp
C:\WINDOWS\System32\SET580.tmp
C:\WINDOWS\System32\SET581.tmp
C:\WINDOWS\System32\SET582.tmp
C:\WINDOWS\System32\SET584.tmp
C:\WINDOWS\System32\SET585.tmp
C:\WINDOWS\System32\SET586.tmp
C:\WINDOWS\System32\SET589.tmp
C:\WINDOWS\System32\SET58A.tmp
C:\WINDOWS\System32\SET58C.tmp
C:\WINDOWS\System32\SET58D.tmp
C:\WINDOWS\System32\SET58F.tmp
C:\WINDOWS\System32\SET590.tmp
C:\WINDOWS\System32\SET593.tmp
C:\WINDOWS\System32\SET594.tmp
C:\WINDOWS\System32\SET596.tmp
C:\WINDOWS\System32\SET597.tmp
C:\WINDOWS\System32\SET59A.tmp
C:\WINDOWS\System32\SET59C.tmp
C:\WINDOWS\System32\SET59E.tmp
C:\WINDOWS\System32\SET59F.tmp
C:\WINDOWS\System32\SET5A0.tmp
C:\WINDOWS\System32\SET5A2.tmp
C:\WINDOWS\System32\SET5A3.tmp
C:\WINDOWS\System32\SET5A7.tmp
C:\WINDOWS\System32\SET5A8.tmp
C:\WINDOWS\System32\SET5AC.tmp
C:\WINDOWS\System32\SET5AD.tmp
C:\WINDOWS\System32\SET5AE.tmp
C:\WINDOWS\System32\SET5B2.tmp
C:\WINDOWS\System32\SET5B4.tmp
C:\WINDOWS\System32\SET5B6.tmp
C:\WINDOWS\System32\SET5B7.tmp
C:\WINDOWS\System32\SET5BA.tmp
C:\WINDOWS\System32\SET5BC.tmp
C:\WINDOWS\System32\SET5BE.tmp
C:\WINDOWS\System32\SET5BF.tmp
C:\WINDOWS\System32\SET5C2.tmp
C:\WINDOWS\System32\SET5C3.tmp
C:\WINDOWS\System32\SET5C4.tmp
C:\WINDOWS\System32\SET5C7.tmp
C:\WINDOWS\System32\SET5C9.tmp
C:\WINDOWS\System32\SET5CD.tmp
C:\WINDOWS\System32\SET5CF.tmp
C:\WINDOWS\System32\SET5D0.tmp
C:\WINDOWS\System32\SET5D1.tmp
C:\WINDOWS\System32\SET5D4.tmp
C:\WINDOWS\System32\SET5D5.tmp
C:\WINDOWS\System32\SET5D9.tmp
C:\WINDOWS\System32\SET5DA.tmp
C:\WINDOWS\System32\SET5DF.tmp
C:\WINDOWS\System32\SET5E1.tmp
C:\WINDOWS\System32\SET5E3.tmp
C:\WINDOWS\System32\SET5E4.tmp
C:\WINDOWS\System32\SET5E7.tmp
C:\WINDOWS\System32\SET5E9.tmp
C:\WINDOWS\System32\SET5EC.tmp
C:\WINDOWS\System32\SET5EF.tmp
C:\WINDOWS\System32\SET5F1.tmp
C:\WINDOWS\System32\SET744.tmp
C:\WINDOWS\System32\SET74A.tmp
C:\WINDOWS\System32\SET770.tmp
C:\WINDOWS\System32\SET776.tmp
¤¤¤¤¤¤¤¤¤¤ Keys :
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Install.exe"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe"
================
Other infections
================
catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-31 11:56:03
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations"=str(7):"d\5\xe650\30(\34¨\xffffn lËÊ\0\0 \1\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\0\xffff\xffff\0\0\0\0\0\0\0\0'\0\4\0\x30303bt\xffc8\xffffv\35\4\0\0\0X4\xffff\xffff\a\0 \31\0\xffff\xffff\20\0\0\0\30\0Þ\0\x88\0\27\0JvQiktreSrie\xff88\xffffn \x2596¢/Ê\0\0\xded8\b\1\0\0\0ø4\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\f\0\0\0\0\0\0\0\a\0&\0{0\x30636\x2d3056\x312d1\x2d33a8\x302d\x31300af\x336637\xffc0\xfffflvcoinst.dll,LvCoInstaller\0\00012\xffe0\xffff7&23e4f959&0\0\32\xff70\xffffc:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll\0TEM¨\xffff{17CCA71B-ECD7-11D0-B908-00A0C9223196}\073f\b\0\x3030\x3130\xffd8\xffffv\f\4\4\0\1\32Cpblte(*\xffe0\xffffv\b\xa8\05\3\0\1.Scrt\xfff0\xffffl\1È5\xe2d0\xe465\xfff0\xffffl\1X4d\x29c4\b\0\0OX\xffff\??\STORAGE#RemovableMedia#7&127252a6&0&RM#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}8¨\xffffn \x9ff0Ø\xeddeÉ\0\0Ø\0\0\0\0\0\xffff\xffff\xffff\xffff\t\0h4\0\xffff\xffff\0\0\0\0 \0$\0\17\0\4\0\x30301_t \xffff{4D36E967-E325-11CE-BFC1-08002BE10318}\0015\0ro\xffd8\xffffv\16\b\0€4\3\0\18DieDtDt2\xffd8\xffffv\n\22\04\1\0\1MDieDtpro\xffd8\xffffv\r\26\04\1\0\1CDieVrin8\xffe0\xffffv\5\24\0x4\1\0\0017Cas4\xffe8\xffffDiskDrive\0\xffe8\xffffgendisk\0S\0\xff88\xffffn X®/Ê\0\0H4\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\0\xffff\xffff\0\0\0\0\0\0\0\0\0\0&\0{\x3064aa\x2d34b1\x312d1\x2d3299\x302d00f9107\xff88\xffffn X®/Ê\0\0\x2a40\2\1\0\0\0¨4\xffff\xffff\0\0\xffff\xffff\0\xffff\xffffv\0\0\0\0\0\0\0006\0&\0{\x3064aa\x2d34b1\x312d1\x2d3299\x302d00f910C\xffd8\xffffv\f\xbe\0€6\1\0\1\SmoiLn01\b\0\a\0\xffe0\xffffv\2\4\xffff\\?\Root#SYSTEM#0000#{07dad660-22f1-11d1-a9f4-00c04fbbde8f}\{70bc06e0-5666-11d3-a184-00105aef9f33}&GLOBAL\0\xfff0\xffffl\1\x32084u\x2e31\xfff0\xffffl\1 4\xe918H\b\0cI\xffc8\xffffUSBSTOR\Disk\0USBSTOR\RAW\0\0\xff98\xffffn X®/Ê\0\0À4\0\0\0\0\xffff\xffff\xffff\xffff\2\0X\31\0\xffff\xffff\0\0\0\0\30\0N\0\0\0\21\0Dvc aaeesubC\xffd8\xffffv\t\4\xffff\xffff\f\0\0\0\0\0\0\0\a\0&\0{0\x30636\x2d3056\x312d1\x2d33a8\x302d\x31300af\x33663\0\xffd8\xffffv\v\4\b\0\2\0\6\0\f\00f\x31308\x3130\x3030\0N\xffd8\xffffv\tN\0¸5\1\0\1.CasUD\0e\0\xfff8\xffff@4\xffd8\xffffv\tN\0È4\1\0\1\eCasUD\e\x1b40\e\xfff8\xffff¸4\xff98\xffffn 8-Ê\0\0\xe470\b\1\0\0\0à4\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\30\0\0\0\0\0\0\0\16\0\21\0Vd0f&i\x305f1\x2863\e\31\xfff0\xffffBase\0H¨\xffffn ‹\xeddeÉ\0\0P4\0\0\0\0\xffff\xffff\xffff\xffff\1\04\0\xffff\xffff\16\0\0\0\30\0\xa4\0\0\0\1\0#\0\xffff\0\xffff\xffff\0\0\0\0\0\0\0\0\0\0&\0\x307b7a6\x2d30\x3232f\x312d1\x2d31af\x302d00fbef5\xff70\xffffl\fˆ\3@š\xfe58\3¢“p\4‘\x848\4Õ\xe95f\xcd0\4Tv°\4\xa848ƒh\4\xe488H\4\x1bef×\x1c50\4)\xf549\x2020*D\xd818\x20c0\4\xf694¶\x24b0\4W\x3229\x24b0\4W\x3229F~1\BITDEF~1\qua\xffe0\xffffv\a\24\0¸ \1\0\0011Ifah\b\0\xab001\xfff8\xffffh4\xffe0\xffffLegacyDriver\0\0\xffd8\xffffv\n \0@4\a\0\1\0HrwrI\0`4\xffe8\xffffMicrosoft\0\xffd8\xffffv\n\22\0è4\1\0\1\0DvcDstni¨\xffffSTORAGE\RemovableMedia\7&127252a6&0&RM\0\0#79\x3036\x31305\x2646\x2330{35\x3033\x2d37bb\x312d1\x2d309\x3266\x302d009ebb\0\xfff0\xffffl\1h4#\0\xffe0\xffffv\5\32\0@8\1\0\1.Cas\0¨\xffffn \x2292
-Ê\0\0@6\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\1\0\a\0Lgof\xffd8\xffffSTORAGE\Volume\0\0t\0\xffd8\xffffv\16N\0X4\1\0\1\0DvcIsac\0\xffe0\xffffLegacyDriver\0004\xffd8\xffffv\tN\0ð4\1\0\1\0CasUDin\0¨\xffffn \x2596¢/Ê\0\0 4\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\0\0\a\0Lgof\xffe8\xffffProfos\0\0\x2140&X\xffffn B‚\xeddeÉ\0\0h\2\1\0\0\0è4\xffff\xffff\1\0ø4\0\xffff\xffff\16\0\0\0\34\0N\0\1\0Q\0\x2323\x233fSOA\x2345Rmvbeei#&222\x2636\x2630R#\x3335f\x33360-6\x2d661\x3064-4\x2d32\x3030\x3061c1f8\x307d0\0\0X\xffff\\?\STORAGE#RemovableMedia#7&127252a6&0&RM#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\0\xffd8\xffffv\20\20\04\1\0\0014MthnDvcI\xffd8\xffffv\f>\0¸4\1\0\1qFinlNmio\xfff0\xffffMEDIA\0\xffe0\xffffv\2\4\b\xffff\xffff\r\04\x24b8+\xffff\xffff"\0\0\0&\0\xbe\0\0\0\f\0BO662\x3333v\f\xffd0\xffffv\24\4l\1°4Q\xd9f1\xffe0\xffffv\b\xa8\0x4\3\0\1iScrt\xffd8\xffffv\f\xa4\0ð4\1\0\1cSmoiLnte\xffd8\xffffv\16N\04\1\0\1\0DvcIsac4\xfff0\xffff.NT\0ah\xffe0\xffffv\5\f\04\1\0\1\0Casi\b\0\x663.\xffd0\xffffv\0230\0\xaac04\1\0\0014LctoIfrain\0\35\xffd8\xffffv\168\0À4\a\0\1NCIsalr\x3233M\xffd8\xffffv\f\4\16Z\0 6\1\0\1eDvcIsacI\xffd8\xffffv\v\4lter\0ie\b\xff88\xffffn X®/Ê\0\0\x528\16\1\0\0\0@4\xffff\xffff\0\0\xffff\xffff\0\xffff\xffff\f\0\0\0\0\0\0\0\0\0&\0\x307b38c\x2d36e9-d\x2d62b9-d\x323618eaA\xffd8\xffffv\v\4\0\0\xfff0\xffffl\1€4\x2140&\b\0\0\0hioiLn\0\0\xffe8\xffffUSB Mouse\0\xffe0\xffffv\6\4\1.LctoIfraincy\xfff0\xffff`X\x9fe0X\0s\xffe0\xffffv\a\22\0È4\1\0\1OSrie\xffd8\xffffv\f\4e¨\xffffn ²°/Ê\0\0\x32084\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\0\0\a\0Lgof\xfff0\xffffl\1\x33604d\x29c4\b\0Ôɸ\xffffv0\xa2\0€4\3\0\1\0\?Vlm{\x32309\x3035\x2d365c\x312d1\x2d6596\x302d\x31303\x3337394\xffd8\xffffv\f\24\04\1\0\0014PoieNmeD\xfff0\xffff\0\0\0è4\xffff\xffff\1\0X3\x24b8+\xffff\xffff\b\0\0\0\30\0\4\0õ\0\17\0LGC_MASV¨\xffffn jGÊ\0\0 4\0\0\1\0\xffff\xffff\x378\6\0x4\x24b8+\xffff\xffff\16\0\0\0\26\0N\0\0\0\4\0\x3030\x3030\0\0\xffe0\xffffv\a\22\0ø4\1\0\1\0Srie\xffe8\xffffWmiApSrv\0\0\xffe0\xffffv\6\4\0DvcDs\0\0\0\xffc8\xffffCarte de performance WMI\0\0\xffe0\xffffØ4404X4˜44\0\0\xffe0\xffffv\3\2X4\3\0\1\37FreBfeDphST\37\xfff0\xffff\x20301\x32204˜\37\xffd8\xffffv\n\22\04\3\0\1\373_rve\37€\37\xffe8\xffffSaiPei\x2e77bp\37\xffd8\xffffv\16\2\37\xffd8\xffffv\r\xbf\004\3\0\1\37MiVdoT\xdb4c\378\xffff1Bihns\x303d\x302e,otat\x2e31\x2c30Strto=\x302e,am=\x302e,u\x303d\x302e\x323b:rgtes\x312d\x2e30\x2c30Cnrs=\x302e,auain\x2e31\x2c30Gma\x2e33\x2c30He\x2e3003Bihns=\x302e,otat\x2e31\x2c30Strto=\x302e,am\x303d\x302e,u\x303d\x302e\0\xe618\37\xffd8\xffffv\t\x80\0 4\3\0\1\37DL\x2036L\xe744\37\xe790\37\xff78\xffff\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\xeb48\37\xffd8\xffffv\n\\0Ð4\3\0\1(FleDt(\xf358( \xffff\2\0\0 \3\0\0\00\x3369\1\0\0\0\1\0\1\0Ô\00\x3379\0\0ä\0ô\0D\01\x3369\1\0\0\0\1\0\1\0\00\x3379\0\0ä\0ô\0D\02\x3369\r\0\xffff\xffff\5\0\1\0\00\x3379\0\0ä\0$\01\x3379\0\0ä\0$\02\x3379\0\0ä\0$\03\x3379\0\0ä\04\04\x3379\0\0ä\0$\0D\0\x1be1\xdff2\xf70fй\00\x3369\t\0\0\0\1\0\1\0ˆ\00\x3379\0\0˜\0¨\0X\01\x3369\1\0\0\0\1\0\1\0¸\00\x3379\0\0˜\0¨\0X\02\x3369\1\0\0\0\1\0\1\0È\00\x3379\0\0˜\0¨\0X\03\x3369\5\0\xffff\xffff\1\0\1\0Ø\00\x3379\0\0è\0ø\0X\04\x3369\5\0\xffff\xffff\1\0\1\0Ø\00\x3379\0\0è\0\0X\05\x3369\5\0\xffff\xffff\b\0\1\0\00\x3379\0\0˜\0(\01\x3379\0\0˜\0(\02\x3379\0\0˜\0(\03\x3379\0\0˜\0\x238\04\x3379\0\0˜\0(\05\x3379\0\0˜\0\x238\06\x3379\0\0˜\0\x248\07\x3379\0\0˜\0\x248\0X\0\x1ce1\xdff2\xf70fй\x2000¯\xe456\x1be1\xdff2\xf70fй\xffffv\v\4\16\x30b0\16\x3080\16Ð\31*¨\xffffn B‚\xeddeÉ\0\0h4\0\0\0\0\xffff\xffff\xffff\xffff\1\0È4\0\xffff\xffff\16\0\0\0\30\0\xa4\0\0\0\1\0#\0ø\37¸\37h\37H\37ð\37à\37€\37°\37\37à\37@\37x\37 \37¨\37`\37ˆ\37°\37à\37\37P\37 \37H\37€\37È\37x\37\xd7b8\37\xd7f0\37\xd828\37\xd868\37\xd8a8\37\xd8d8\37\xd910\37\xda18\37\xda50\37\xd948\37\xd980\37\xd9b0\37\xda78\37\xd9e8\37\xdab0\37\xdbe0\37\xdc10\37\xdaf0\37\xdb18\37\xdb48\37\xdb80\37\xdbb8\37\xdf60\37\xdf98\37\xdfc0\37\xde88\37\xdec8\37\xdc60\37\xdc90\37\xdde0\37\xde10\37\xdcb8\37\xdce8\37(\37\37\xe0f0\37\xe128\37\xe160\37\xe1a0\37\xe1d8\37\xe408\37\xe438\37\xe288\37\xe2d0\37\xe300\37\xe330\37\xe368\37\xe3a0\37\xe698\37\xe3d8\37\xe6d0\37\xe470\37\xe4a0\37\xe4e0\37\xe518\37\xe550\37\xe578\37\xe598\37\xe5c0\37\xe5e8\37\xe618\37\xe640\37\xe668\37\xe970\37\xe998\37\xe9c0\37\xe9e8\37\xe708\37\xe738\37\xe768\37\xe790\37\xe7c0\37\xe7f8\37\xe848\37\xe880\37\xe8d8\37\xe930\37\xec88\37\xece0\37\xed18\37\xed48\37\xed70\37\xeda8\37\xedd8\37\xee00\37\xee38\37\xee78\37\xeea8\37\xeed8\37\xef18\37\xef50\37\xef90\37\xefd0\37\xf020\37\xf060\37\xf098\37\xf0d8\37\xee88(\xeec0(\xef08(\xef50(\x1af8)\x1bc8)\xeac8\37\xeb48\37\xf4b0(\xf4e0(\xf020(\xf048(\xf070(\xf098(\xf2c8(\xf2f8(\xf328(\xf358(Ø((8(¸(ð(((X(p(˜4¸4Ø4°(è(((p((4h4¨4Ð44ø4Ð4h7~1\Temp\{93BE784B-832A-44D3-B073-F86B1C7489EC}\{1735ad57-fd6e-4eb5-a276-56c2574d6412}\atiiemp\CCI3\WINDOWSNDOWS\symp\0!\??\2\SET445\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\xffd8\xffffv\16\4\1eCSD?¨\xffffn 8@\xeddeÉ\0\0H.\0\0\0\0\xffff\xffff\xffff\xffff\b\084\0\xffff\xffff\0\0\0\0 \0"\0\17\0\4\0\x30301\0\0\xffd8\xffffvolume_install\0\0\0\0\xffd8\xffffv\f\24\0X\e\1\0\1\0PoieNm\0\0\xffd8\xffffv\16\b\0\27\3\0\1\0DieDtDt\0\xffd8\xffffv\n\22\0\e\1\0\1\0DieDt\0\0\0\xffe0\xffff5.1.2600.0\0\0\0\0\xffd8\xffffv\tN\0¨4\1\0\1\0CasUDe\0\0\xfff8\xffffè4\xffd8\xffffv\16\34\0P4\1\0\1\16DcSbeMs\16\xffe0\xffff255.255.255.0\0\xffe8\xffff0.0.0.0\0à4\xffc0\xffffv&$\0H4\3\0\1\0{957\x2d3067-9\x2d3888\x332d\x32427D\x333495\0¨\xffffn Æ\x2adfÊ\0\0°4\0\0\1\0\xffff\xffff\x1930\6\0¨+\x24b8+\xffff\xffff\16\0\0\0\26\0N\0\0\0\4\0\x3030\x3030rt\xfff8\xffff@4\xffe0\xffffComposite.Dev\0 \xffffn ö\x26a3ÔÉ\0\0p\t\2\0\0\0h8\xffff\xffff\1\03à@\xffff\xffff$\0\0\0\16\0>\0\0\0\v\0AEvnLg\x3201\xa64\xffd8\xffffv\20\x84\0È4\1\0\1\26EetesgFl\xfff0\xffff.NT\0\x2140&\xffd8\xffffv\r\32\04\1\0\1\0DcIAdes\0\xffe0\xffff192.168.0.14\0\0\xffd8\xffffv\r\32\0P4\1\0\1\0DcIAdes\0\xffe0\xffff192.168.0.14\0\0\xffd8\xffffv\16\34\0˜4\1\0\1\0DcSbeMs\0\xffe0\xffff255.255.255.0\0\xffe0\xffffv\5\4re\0\0\0\xffe0\xffff192.168.0.1\0\0\0\xffd8\xffffv\n\30\0¸4\1\0\1\0DcSre\0\0\0\xffe0\xffff192.168.0.1\0\0\0\xffe0\xffffv\2\4ndie\0\0\0\xffe0\xffffv\2\4v\27\4\x9ff04\1\0\1qCasU\xffd8\xffffv\20\32\0\xd8784\1\0\0014MthnDvcI\xff70\xffffØ\16w\xa8c0bClass_00&Prot_00\0USB\DevClass_00&SubClass_00\0USB\DevClass_00\0USB\COMPOSITE\0\0\0\xe618\37\xffd8\xffffv\n"\0`4\1\0\1\0DieDs\0\0\0\xffd8\xffffVolume générique\0\2\xffd8\xffff\xabf844\xab204Ø4\xffff¸4\xffe8\xffff7-1-2001\0l\xfff8\xffff¨4hi\xffff\16\0\0\0\34\0N\0\0\0Q\0\x2323\x233fSOA\x2345Rmvbeei#&222\x2636\x2630R#\x3335f\x33360-6\x2d661\x3064-4\x2d32\x3030\x3061c1f8}Á\b¨\xffffSTORAGE\RemovableMedia\7&127252a6&0&RM\0\0\0\xffff\xffff\16\0\0\0\30\0\xa4\0\0\0\1\0#\0\xffe8\xffffMicrosoft\0\xffe0\xffffv\b\4\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\0\0\a\0Lgof¨\xffffn 8-Ê\0\084\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\1\0\a\0Lgof¨\xffff{36FC9E60-C465-11CF-8056-444553540000}\0\0oe\xfff8\xffff¨4¨\xffff{71A27CDD-812A-11D0-BEC7-08002BE2092F}\01\0\0\xff98\xffffn 8-Ê\0\084\0\0\0\0\xffff\xffff\xffff\xffff\2\0¨\27\x24b8+\xffff\xffff\0\0\0\0(\0\x9a\0\0\0\21\0Dvc aaees\0v\22\xffd8\xffffv\r\b\0Ð4\1\0\1fIfetoEt3\xffe0\xffff5.1.2600.0\0\0\0\0\xffd8\xffffVolume générique\0 ¨\xffffn Ú?\xeddeÉ\0\0Ø\35\0\0\0\0\xffff\xffff\xffff\xffff\n\0¨4\0\xffff\xffff\0\0\0\0 \0L\0\e\0\4\0\x303026E\xffd8\xffffv\v\4\b\0X5\x24b8+\xffff\xffff\16\0\0\0\30\0X\0\0\0\4\0\x3030\x3030\0\0\xffd8\xffffv\t<\0\xf290<\2\0\1\nIaeah\0\1d\b\0˜4\xffc8\xffffˆ4è4˜3\x176844Ð4x3 4¸,à3X4Ð4h4\xffe0\xffffv\6\4\0\xa9004\1\0\19Dslyae 9\20\0DA\0006-1¨\xffff{8ECC055D-047F-11D1-A537-0000F8753ED1}\0\x3030\0012\xfff0\xffffXX¨X\0}\xffd8\xffffv\f\49&Pid_018c&Rev_0100\0USB\Vid_04f9&Pid_018c\0\0¨\xffffn \xdd09ÓÉ\0\0\x3058\0\0\0\0\0\xffff\xffff\xffff\xffff\t\04\0\xffff\xffff\0\0\0\0 \0006\0\6\0\4\0\x30300\xe618\37\xffe8\xffffusbccgp\0\0\0\xffd8\xffffv\n\32\04\1\0\1SIfeto\ht\xffe0\xffffUSBSTOR_BULK\08\xffd8\xffffv\r\b\0\xffffv\r\26\0p4\1\0\18DieVrin5\xffe0\xffff5.1.2600.0\0:\W\xffd8\xffffv\n\32\0¨4\1\0\1aIfetoSB\0P\xffff\1\x90\0\x9c\0\24\0000\0\2\34\1\0\24ÿ\17\0\0\x500 \0#\0\0\0\x500\22\0\0\0\x500\22\0rt\xfff0\xffff XX·J\xffd8\xffffv\20B\0 4\1\0\0013MthnDvcI¸\xffffusb\class_08&subclass_06&prot_50\0p\xffe0\xffffv\a\26\0`4\1\0\1\0Ifah\xffd8\xffffv\n\16\04\1\0\1\0DvcDscTm\xffe0\xffff3ð3À8\x2d984`8€8ð4\xffd8\xffffv\n\22\0à4\1\0\1uDieDtA/A\xffd8\xffffv\r\26\0ð4\1\0\1aDieVrin\0¸\xffff(Contrôleur hôte USB standard)\0001-0\xffd8\xffffv\16F\0H4\1\0\0014DvcIsac3\b\0¸4\xffd8\xffff\xf0583`4È44@4P4x4 4\x9fc84\xffd8\xffffv\f\4\a\20\0Ð4\1\0\1lSrie \xffffn ö\x26a3ÔÉ\0\0H4\0\0\0\0\xffff\xffff\xffff\xffff\1\04à@\xffff\xffff\0\0\0\0 \0\x84\0\0\0\v\0AEvnLg39\xff78\xffffC:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\EventLogMessages.dll\0¸\xffffACEEventLogSource\0ACEEventLog\0\0\30\x2530\30\xffe0\xffffv\4\4\17\0\0\x500 \0\x220\0\0\24\2\0\0\x500\v\0\0\30ý\2\0\0\x500 \0#\0\0\0\x500\22\0\0\0\x500\22\00009¨\xffffn ž\xef87\0P1€\35\xffff\xffff\0\0\0\0\20\0\xa8\0\0\0\b\0Scrt\xfff0\xffffl\1P4\xe2d0\xe465 \xffff{36FC9E60-C465-11CF-8056-444553540000}\0006\0\0\0\xffd8\xffffv\f\24\004\1\0\1iPoieNmys\xffd8\xffffv\16\b\0ˆ4\3\0\1rDieDtDtS\xffd8\xffffv\nL\04\1\0\0017DieDs812°\xffffPériphérique de stockage de masse USB\0\xfff0\xffffl\1˜4#\0¨\xffffn
â-Ê\0\0P4\0\0\0\0\xffff\xffff\xffff\xffff\1\0(+€\35\xffff\xffff\0\0\0\0\20\0\xa8\0\0\0\b\0Scrt\b\0\0\0\xfff0\xffff\xa938X\xa9a0X\xe2d0\xe465\xff98\xffffn ö\x26a3ÔÉ\0\0H4\0\0\0\0\xffff\xffff\xffff\xffff\1\0ø4à@\xffff\xffff\0\0\0\0 \0\x84\0\1\0\21\0AEvnLgore\0014MthnDvcI\xffd8\xffffstorage\volume\0ieD\xffd8\xffffv\n"\04\1\0\1\0DieDs\0\0\0\xffd8\xffffVolume générique\0\2\xffd8\xffff\x3230\34€-`4ˆ4°4p4˜4è4te\xffe0\xffffwpdmtp.inf\0MsO\xffd8\xffffv\r\x90\0H:\a\0\1nCmailIsu\xffd0\xffff4\xa9784è404X4€4 4H4x4h4v\n¨\xffffn \x9ff0Ø\xeddeÉ\0\0\x2440\36\0\0\0\0\xffff\xffff\xffff\xffff\t\0\xa4a84\0\xffff\xffff\0\0\0\0 \0$\0\17\0\4\0\x30301_t\xfff8\xffff¨4\xfff0\xffff0X˜X\xe2d0\xe465\xffe0\xffffv\6\4\xffffv\v\4 v\xedd5É\0\0x2\0\0\0\0\xffff\xffff\xffff\xffff\n\0x4\0\xffff\xffff\0\0\0\0 \0*\0\0\0\4\0\x3030\x3030 |\xffd0\xffffWUDFCoinstaller.dll\0\0\32\xffd8\xffffv\n\b\0\27\1\0\1PIfetoft\0\xffd8\xffffv\r\b\08\27\1\0\1\32IfetoEt\25\xffd8\xffffv\f\24\0À\e\1\0\1\25PoieNm\xe778\32\xffd8\xffffv\16\b\0x\27\3\0\1\32DieDtDt\e\xffd8\xffffv\n\24\0È\e\1\0\1sDieDt707\xffd8\xffffv\r\34\0\xa5204\1\0\0015DieVrin\25\xffd8\xffffv\np\0Ð7\a\0\1\21HrwrIsFs\xfff8\xffffÐ4¨\xffffn ø\xef89\xffff\16\0\0\0\30\0X\0\0\0\4\0\x3030\x3030ÿ\17¨\xffff{8ECC055D-047F-11D1-A537-0000F8753ED1}\0\0ÿ\17\xff78\xffffc:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe\0-BF\xffc8\xffffWebcam Effects Helper.\0\0n \xffd8\xffff,°,4\x326044À,°4Ø4\xffff\xffff\xffd8\xffffv\f\4\0\0\x500\22\0\0\0\x500\22\0 M\xffd8\xffffv\n\30\0Ð4\1\0\1\17OjcNm\0\1\30\xffd8\xffffv\v.\0X4\1\0\1\aDsrpin\0015\b\0ie\xffe8\xffffTrufos\0sta\xffd8\xffffv\r\b\0\x23d0\27\1\0\0014IfetoEt,\xffd8\xffffv\f\24\0ð\e\1\0\0014PoieNmeD\xffd8\xffffv\16\b\0 \27\3\0\18DieDtDt2\xfff0\xffffl\1P4#\0\xfff0\xffffl\1x5\xe918H \xffffn ü É\0\0`\a\1\0\0\0ð4\xffff\xffff\1\0Ð4\x24b8+\xffff\xffff\b\0\0\0\30\0\4\0\xbe\0\r\0LGC_RFS\0\xffd8\xffffv\v\4v\n\22\0`\e\1\0\1MDieDtpro\xffd8\xffffv\r\26\0°4\1\0\1CDieVrin8\xffe0\xffff5.1.2535.0\0\0 4\xffd8\xffffv\20\20\0°\e\1\0\0014MthnDvcI\xffe0\xffffMTP Device\0\x82 \x83\xffe0\xffffv\5\32\084\1\0\1qCasd\xffe0\xffffLegacyDriver\0i\xfff0\xffffl\1P8\xe918H\xffd8\xffff03È4 4X4\x4de04404¸4(4¨\xffffn ¦è>Ê\0\0Ð\t\1\0\0\0Pilote parent générique USB Microsoft\0\xffd8\xffffv\n6\0À4\1\0\1IDieDssta\xfff0\xffffUSB\0\0\0hi\0\0 4\1\0\1\0(\27è\xef88\30\1\0\0014Srie\xffd8\xffffv\f\4\xff60\xffffn ÂÎ>Ê\0\0h@\1\0\0\0à4\xffff\xffff\1\0ø\32\0\xffff\xffff\16\0\0\0\34\0J\0\0\0O\0\x2323\x233fU\x2342Vd04&i\x305f3\x2335\x3031F1D20\x3037#1403-a\x2d3747-a\x2d66b4537\x3335}\xffd8\xffffP\21˜\21@\21@\24è\21\32°\34\xf6b0'°\t\xffd8\xffff°\t\x980\n¨\21 \32\xe178\32€'À'2 y¨\xffffn ÂÎ>Ê\0\0¨4\0\0\0\0\xffff\xffff\xffff\xffff\1\0X\e\0\xffff\xffff\16\0\0\0\30\0\xa0\0\0\0\1\0#Win\xfff8\xffffP4\xffe0\xffffv\5\32\0ð4\1\0\1yCasp\xfff0\xffff°X8X\xe2d0\xe465\xffd8\xffffv\n$\0\xab804\1\0\1\0DieDsm\0\0¨\xffffn ž\xef87\xffffProcess Monitor\0ys\xffe0\xffffv\6\4\x1a00\30\0t.inf\0004\xffd8\xffffv\20\x84\0è4\1\0\0014EetesgFl\xffd8\xffffUSB DISK 12X \0\0\xffe0\xffffv\5\32\0Ø5\1\0\1vCas\0X\xffff\\?\USB#Vid_054c&Pid_0385#10FA15D5260870#{14480d3f-7a47-4a75-aaef-b14f56397153}\0vi\xffd8\xffffv\r4\04\a\0\0015CmailIsyH\xffffn À‰\xeddeÉ\0\00H\1\0\0\0˜4\xffff\xffff\1\004\0\xffff\xffff\16\0\0\0\34\0x\0\5\0f\0\x2323\x233fUBT\x2352Ds&e\x265fPo_S_IKP\x266fRv\x2e31\x3331#79\x3036\x31305\x2646\x2330{35\x3033\x2d37bb\x312d1\x2d309\x3266\x302d009ebb\0\xffe0\xffffBDA IPSink\0e)\0\xfff0\xffffl\1ð4\xe2d0\xe465\xffe0\xffffv\a\16\04\1\0\1RSrie\xffd8\xffffv\r\26\004\1\0\1\0DieVrin\0\xffe0\xffffv\a\30\0¸4\1\0\1eIfah\xffe0\xffffv\3\24\0h4\1\0\1\0Mguc\xfff0\xffffl\1ø4#\0 \xffffn X2É\0\0`\a\1\0\0\0ø4\xffff\xffff\1\0\xfde83\x24b8+\xffff\xffff\b\0\0\0\30\0\4\0]\0\17\0LGC_DEFR\xffe0\xffff\xda883ˆ4\x2ed86 4\x2f006˜64\xffc8\xffffUSB DISK Pro USB Device\00060\b\0\0\0\xffd8\xffffv\tN\0x4\1\0\1\26CasUD\26\26\xfff0\xffffl\1€4\x2140&\xffc8\xffffUSB Mass Storage Device\0p3\xffd8\xffffvolume_install\0\0\0\0\xffd8\xffffv\f\24\0(4\1\0\1\0PoieNm\0\0\20\0Fdc\0\0\0\xffd8\xffffv\r\x90\09\a\0\0015CmailIs\0\xffd8\xffffLecteur de disque\0\xfff0\xffff°X\a\26\04\1\0\1\5Ifah\xffe0\xffffvolume.inf\0001\0\0\xffd0\xffffv\24\4\0\xaaf84\1\0\1\0Ifeto\0\0\0\xffe0\xffff5.1.2600.0\0\0\0\0\xffe8\xffffl\2à<M(À<íÏ\xffd8\xffffv\f0\0\xaa484\1\0\1\0FinlNm\0\0\xffe8\xffffmouhid\0n\0\0\xffd8\xffffv\16x\0Ð4\1\0\1\0DvcIsac\0\xff80\xffffUSBSTOR\Disk&Ven_&Prod_USB_DISK_Pro&Rev_1.13\5759160015BF&0\0RV¨\xffffn À‰\xeddeÉ\0\0\xa8484\0\0\0\0\xffff\xffff\xffff\xffff\1\0°4\0\xffff\xffff\16\0\0\0\30\0Î\0\0\0\1\0#0\0\0\xffd8\xffffv\fÎ\0 4\1\0\1\0SmoiLn\0\0\xffd8\xffffv\16N\0 4\1\0\1\0DvcIsac\0\xffe0\xffffv\a\16\04\1\0\1.Srie\xffe0\xffffppbipr.dll\0\0\x21c01\xffd8\xffffv\f\4CmailI\xe773\37hi \0\x220\0\0\24\2\0\0\x500\v\0\0\30ý\2\0\0\x500 \0#\0\0\0\x500\22\0\0\0\x500\22\0pp\xffc0\xffffPériphérique USB composite\0'il\xffd8\xffffv\v\4\x2a40\2\34\0\0\0°?\xffff\xffff\0\0\xffff\xffff\0\xffff\xffffÂ\0\0\0\0\0\0\0'\0&\0{5cf\x2d306\x3033\x312d1\x2d3291\x302d00f91de\xff60\xffffn |\xdd2aÓÉ\0\0È4\1\0\0\084\xffff\xffff\1\0 4\0\xffff\xffff\16\0\0\0\34\0F\0\a\0M\0\x2323\x233fU\x2342Vd0f&i\x305f1\x2363BO662\x3333#adb\x3031-\x3335\x2d301\x3264-\x3130\x2d66\x3030\x30634b5e}i¨\xffffn |\xdd2aÓÉ\0\0@4\0\0\0\0\xffff\xffff\xffff\xffff\1\0`4\0\xffff\xffff\16\0\0\0\30\0\x9c\0\0\0\1\0#as \xfff0\xffffl\1à4#\0°\xffffUSB\Vid_04f9&Pid_018c\BROA6F642833\0 se\xffd8\xffffv\f\x9c\0À4\1\0\1eSmoiLnnd\xff60\xffff\\?\USB#Vid_04f9&Pid_018c#BROA6F642833#{a5dcbf10-6530-11d2-901f-00c04fb951ed}\0\xfff8\xffff˜4\xffd8\xffffv\f\x9a\0¸4\1\0\1\0SmoiNmH\25\xfff8\xffff\xdb284X\xffff\\?\STORAGE#RemovableMedia#7&127252a6&0&RM#{53f5630a-b6bf-11d0-94f2-00a0c91efb8b}\0X\xffffn B‚\xeddeÉ\0\0XH\1\0\0\0Ð4\xffff\xffff\1\0Ð4\0\xffff\xffff\16\0\0\0\34\0N\0\1\0Q\0\x2323\x233fSOA\x2345Rmvbeei#&222\x2636\x2630R#\x3335f\x33360-6\x2d661\x3064-4\x2d32\x3030\x3061c1f8\x307d0\0\0\xffd8\xffffv\16F\0ˆ4\1\0\0013DvcIsac2\xfff0\xffffl\1ˆ5
Thx to Chiquitine29.....& CCM team
User : SYLVIE (Administrateurs) # SAMSUNG-F892200
Update on 30/12/2009 by g3n-h@ckm@n ::::: 23:45
Start at: 11:52:57 | 31/12/2009
Contact : g3n-h@ckm@n sur CCM
Genuine Intel(R) CPU T2250 @ 1.73GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 6.0.2900.5512
Windows Firewall Status : Disabled
AV : Bitdefender Antivirus 8.0 [ (!) Disabled | Updated ]
FW : Bitdefender Firewall[ (!) Disabled ]8.0
C:\ -> Disque fixe local | 86,05 Go (47,01 Go free) | NTFS
D:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
C:\Program Files\Samsung\DisplayManager\DisplayManager.exe
C:\Program Files\Samsung\DisplayManager\dmhkcore.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\SAMSUNG\MagicKBD\MagicKBD.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Documents and Settings\SYLVIE\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\List_Kill'em\List_Kill'em.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Documents and Settings\SYLVIE\Local Settings\Temp\219.tmp\pv.exe
======================
Keys "Run"
======================
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
CTFMON.EXE REG_SZ C:\WINDOWS\system32\ctfmon.exe
msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
LDM REG_SZ C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
ATICCC REG_SZ "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
RTHDCPL REG_SZ RTHDCPL.EXE
Alcmtr REG_SZ ALCMTR.EXE
<NO NAME> REG_SZ
EDS REG_SZ C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
AGRSMMSG REG_SZ AGRSMMSG.exe
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
RemoteControl REG_SZ "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
B'sCLiP REG_SZ C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
MagicKeyboard REG_SZ C:\Program Files\SAMSUNG\MagicKBD\PreMKBD.exe
BatteryManager REG_SZ C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
DMHotKey REG_SZ C:\Program Files\Samsung\DisplayManager\DMLoader.exe
DisplayManager REG_SZ C:\Program Files\Samsung\DisplayManager\DisplayManager.exe
SSBkgdUpdate REG_SZ "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
PaperPort PTD REG_SZ C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
IndexSearch REG_SZ C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
BrMfcWnd REG_SZ C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
SetDefPrt REG_SZ C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe
ControlCenter3 REG_SZ C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
Adobe Photo Downloader REG_SZ "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
fssui REG_SZ "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
BitDefender Antiphishing Helper REG_SZ "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
BDAgent REG_SZ "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
LogitechCommunicationsManager REG_SZ "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
LogitechQuickCamRibbon REG_SZ "C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" /hide
Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
Adobe ARM REG_SZ "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
TkBellExe REG_SZ "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
=====================
Other Keys
=====================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
dontdisplaylastusername REG_DWORD 0 (0x0)
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
shutdownwithoutlogon REG_DWORD 1 (0x1)
undockwithoutlogon REG_DWORD 1 (0x1)
===============
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
NoDriveTypeAutoRun REG_DWORD 128 (0x80)
NoDriveAutoRun REG_DWORD 128 (0x80)
HonorAutoRunSetting REG_DWORD 0 (0x0)
===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
HonorAutoRunSetting REG_DWORD 0 (0x0)
NoDriveAutoRun REG_DWORD 128 (0x80)
NoDriveTypeAutoRun REG_DWORD 128 (0x80)
===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS REG_SZ
===============
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\crypt32chain]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cscdll]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\dimsntfy]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ScCertProp]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Schedule]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\sclgntfy]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\SensLogn]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\termsrv]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WgaLogon]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wlballoon]
===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
{AEB6717E-7E19-11d0-97EE-00C04FD91972} REG_SZ
===============
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
%windir%\system32\sessmgr.exe REG_SZ %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
C:\WINDOWS\system32\dpvsetup.exe REG_SZ C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test
C:\Program Files\Internet Explorer\IEXPLORE.EXE REG_SZ C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer
C:\Program Files\Messenger\msmsgs.exe REG_SZ C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger
%windir%\Network Diagnostic\xpnetdiag.exe REG_SZ %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
C:\Program Files\Skype\Phone\Skype.exe REG_SZ C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe REG_SZ C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe
C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe REG_SZ C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe REG_SZ C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe
C:\Program Files\Windows Live\Messenger\wlcsdk.exe REG_SZ C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe REG_SZ C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger
C:\Program Files\Windows Live\Messenger\msnmsgr.exe REG_SZ C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe REG_SZ C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
%windir%\system32\sessmgr.exe REG_SZ %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
%windir%\Network Diagnostic\xpnetdiag.exe REG_SZ %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
C:\Program Files\Windows Live\Messenger\wlcsdk.exe REG_SZ C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe REG_SZ C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger
C:\Program Files\Windows Live\Messenger\msnmsgr.exe REG_SZ C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe REG_SZ C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare
===============
controles ActivX
===============
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8AD9C840-044E-11D1-B3E9-00805F499D93}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
===============
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{DFB17AA8-042A-429D-987C-26CE244A4189}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10072CEC-8CC1-11D1-986E-00A0C955B42F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{233C1507-6A77-46A4-9443-F871F945D258}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{283807B5-2C60-11D0-A31D-00AA00B92C03}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2A202491-F00D-11cf-87CC-0020AFEECF20}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{36f8ec70-c29a-11d1-b5c7-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3bf42070-b3b1-11d1-b5c5-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4278c270-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f216970-c90c-11d1-b5c7-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5056b317-8d4c-43ee-8543-b9d1e234b8f4}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5945c046-1e7d-11d1-bc44-00c04fd912be}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5A8D6EE0-3E18-11D0-821E-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CC2A9BA0-3BDD-11D0-821E-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11cf-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}
==============
BHO :
======
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
================
Internet Explorer :
================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr
========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]
Ndisuio : 0x3
EapHost : 0x3
SharedAccess : 0x2
wuauserv : 0x2
=========
=======
Drive :
=======
D‚fragmenteur de disque Windows
Copyright (c) 2001 Microsoft Corp. et Executive Software International Inc.
Rapport d'analyse
86,05 Go total, 47,01 Go libre (54%), 1% fragment‚ (fragmentation du fichier 2%)
Il ne vous est pas n‚cessaire de d‚fragmenter ce volume.
¤¤¤¤¤¤¤¤¤¤ Files/folders :
C:\WINDOWS\System32\_004487_.tmp.dll
C:\WINDOWS\System32\_004488_.tmp.dll
C:\WINDOWS\System32\_004489_.tmp.dll
C:\WINDOWS\System32\_004490_.tmp.dll
C:\WINDOWS\System32\_004496_.tmp.dll
C:\WINDOWS\System32\_004497_.tmp.dll
C:\WINDOWS\System32\_004498_.tmp.dll
C:\WINDOWS\System32\_004499_.tmp.dll
C:\WINDOWS\System32\_004500_.tmp.dll
C:\WINDOWS\System32\_004501_.tmp.dll
C:\WINDOWS\System32\_004502_.tmp.dll
C:\WINDOWS\System32\_004503_.tmp.dll
C:\WINDOWS\System32\_004504_.tmp.dll
C:\WINDOWS\System32\_004505_.tmp.dll
C:\WINDOWS\System32\_004506_.tmp.dll
C:\WINDOWS\System32\_004507_.tmp.dll
C:\WINDOWS\System32\_004510_.tmp.dll
C:\WINDOWS\System32\_004511_.tmp.dll
C:\WINDOWS\System32\_004513_.tmp.dll
C:\WINDOWS\System32\_004516_.tmp.dll
C:\WINDOWS\System32\_004517_.tmp.dll
C:\WINDOWS\System32\_004519_.tmp.dll
C:\WINDOWS\System32\_004520_.tmp.dll
C:\WINDOWS\System32\_004521_.tmp.dll
C:\WINDOWS\System32\_004522_.tmp.dll
C:\WINDOWS\System32\_004524_.tmp.dll
C:\WINDOWS\System32\_004525_.tmp.dll
C:\WINDOWS\System32\_004526_.tmp.dll
C:\WINDOWS\System32\_004527_.tmp.dll
C:\WINDOWS\System32\_004529_.tmp.dll
C:\WINDOWS\System32\_004530_.tmp.dll
C:\WINDOWS\System32\_004531_.tmp.dll
C:\WINDOWS\System32\_004532_.tmp.dll
C:\WINDOWS\System32\_004533_.tmp.dll
C:\WINDOWS\System32\_004535_.tmp.dll
C:\WINDOWS\System32\_004536_.tmp.dll
C:\WINDOWS\System32\_004537_.tmp.dll
C:\WINDOWS\System32\_004538_.tmp.dll
C:\WINDOWS\System32\_004539_.tmp.dll
C:\WINDOWS\System32\_004540_.tmp.dll
C:\WINDOWS\System32\_004541_.tmp.dll
C:\WINDOWS\System32\_004544_.tmp.dll
C:\WINDOWS\System32\_004545_.tmp.dll
C:\WINDOWS\System32\_004546_.tmp.dll
C:\WINDOWS\System32\_004548_.tmp.dll
C:\WINDOWS\System32\_004551_.tmp.dll
C:\WINDOWS\System32\_004552_.tmp.dll
C:\WINDOWS\System32\_004557_.tmp.dll
C:\WINDOWS\System32\_004559_.tmp.dll
C:\WINDOWS\System32\_004562_.tmp.dll
C:\WINDOWS\System32\_004564_.tmp.dll
C:\WINDOWS\System32\_004565_.tmp.dll
C:\WINDOWS\System32\_004566_.tmp.dll
C:\WINDOWS\System32\_004567_.tmp.dll
C:\WINDOWS\System32\_004570_.tmp.dll
C:\WINDOWS\System32\_004571_.tmp.dll
C:\WINDOWS\System32\_004572_.tmp.dll
C:\WINDOWS\System32\_004573_.tmp.dll
C:\WINDOWS\System32\_004574_.tmp.dll
C:\WINDOWS\System32\_004579_.tmp.dll
C:\WINDOWS\System32\drivers\_004462_.tmp.dll
C:\WINDOWS\System32\drivers\_004471_.tmp.dll
C:\WINDOWS\System32\drivers\etc\hosts.msn
C:\WINDOWS\System32\SET12CD.tmp
C:\WINDOWS\System32\SET12D0.tmp
C:\WINDOWS\System32\SET12D5.tmp
C:\WINDOWS\System32\SET12DA.tmp
C:\WINDOWS\System32\SET12DE.tmp
C:\WINDOWS\System32\SET12E5.tmp
C:\WINDOWS\System32\SET12E8.tmp
C:\WINDOWS\System32\SET12F8.tmp
C:\WINDOWS\System32\SET12FB.tmp
C:\WINDOWS\System32\SET1300.tmp
C:\WINDOWS\System32\SET1305.tmp
C:\WINDOWS\System32\SET1306.tmp
C:\WINDOWS\System32\SET130A.tmp
C:\WINDOWS\System32\SET1311.tmp
C:\WINDOWS\System32\SET1314.tmp
C:\WINDOWS\System32\SET1315.tmp
C:\WINDOWS\System32\SET1331.tmp
C:\WINDOWS\System32\SET1336.tmp
C:\WINDOWS\System32\SET133D.tmp
C:\WINDOWS\System32\SET134B.tmp
C:\WINDOWS\System32\SET1365.tmp
C:\WINDOWS\System32\SET136C.tmp
C:\WINDOWS\System32\SET137A.tmp
C:\WINDOWS\System32\SET228.tmp
C:\WINDOWS\System32\SET229.tmp
C:\WINDOWS\System32\SET22A.tmp
C:\WINDOWS\System32\SET22C.tmp
C:\WINDOWS\System32\SET22E.tmp
C:\WINDOWS\System32\SET230.tmp
C:\WINDOWS\System32\SET237.tmp
C:\WINDOWS\System32\SET238.tmp
C:\WINDOWS\System32\SET23B.tmp
C:\WINDOWS\System32\SET240.tmp
C:\WINDOWS\System32\SET241.tmp
C:\WINDOWS\System32\SET242.tmp
C:\WINDOWS\System32\SET244.tmp
C:\WINDOWS\System32\SET245.tmp
C:\WINDOWS\System32\SET246.tmp
C:\WINDOWS\System32\SET247.tmp
C:\WINDOWS\System32\SET248.tmp
C:\WINDOWS\System32\SET24A.tmp
C:\WINDOWS\System32\SET24B.tmp
C:\WINDOWS\System32\SET24C.tmp
C:\WINDOWS\System32\SET24D.tmp
C:\WINDOWS\System32\SET250.tmp
C:\WINDOWS\System32\SET257.tmp
C:\WINDOWS\System32\SET258.tmp
C:\WINDOWS\System32\SET259.tmp
C:\WINDOWS\System32\SET25A.tmp
C:\WINDOWS\System32\SET25D.tmp
C:\WINDOWS\System32\SET25F.tmp
C:\WINDOWS\System32\SET260.tmp
C:\WINDOWS\System32\SET267.tmp
C:\WINDOWS\System32\SET26A.tmp
C:\WINDOWS\System32\SET26B.tmp
C:\WINDOWS\System32\SET26D.tmp
C:\WINDOWS\System32\SET26E.tmp
C:\WINDOWS\System32\SET26F.tmp
C:\WINDOWS\System32\SET274.tmp
C:\WINDOWS\System32\SET275.tmp
C:\WINDOWS\System32\SET276.tmp
C:\WINDOWS\System32\SET277.tmp
C:\WINDOWS\System32\SET278.tmp
C:\WINDOWS\System32\SET27E.tmp
C:\WINDOWS\System32\SET283.tmp
C:\WINDOWS\System32\SET284.tmp
C:\WINDOWS\System32\SET288.tmp
C:\WINDOWS\System32\SET28C.tmp
C:\WINDOWS\System32\SET293.tmp
C:\WINDOWS\System32\SET294.tmp
C:\WINDOWS\System32\SET296.tmp
C:\WINDOWS\System32\SET299.tmp
C:\WINDOWS\System32\SET29A.tmp
C:\WINDOWS\System32\SET2A3.tmp
C:\WINDOWS\System32\SET2A4.tmp
C:\WINDOWS\System32\SET2A7.tmp
C:\WINDOWS\System32\SET2A9.tmp
C:\WINDOWS\System32\SET2AA.tmp
C:\WINDOWS\System32\SET2AB.tmp
C:\WINDOWS\System32\SET2AC.tmp
C:\WINDOWS\System32\SET2AD.tmp
C:\WINDOWS\System32\SET2BD.tmp
C:\WINDOWS\System32\SET2C2.tmp
C:\WINDOWS\System32\SET2C4.tmp
C:\WINDOWS\System32\SET2C6.tmp
C:\WINDOWS\System32\SET2C7.tmp
C:\WINDOWS\System32\SET2C8.tmp
C:\WINDOWS\System32\SET2CB.tmp
C:\WINDOWS\System32\SET2CC.tmp
C:\WINDOWS\System32\SET2D0.tmp
C:\WINDOWS\System32\SET2D1.tmp
C:\WINDOWS\System32\SET2D4.tmp
C:\WINDOWS\System32\SET2D5.tmp
C:\WINDOWS\System32\SET2D6.tmp
C:\WINDOWS\System32\SET2DB.tmp
C:\WINDOWS\System32\SET2DC.tmp
C:\WINDOWS\System32\SET2DE.tmp
C:\WINDOWS\System32\SET2DF.tmp
C:\WINDOWS\System32\SET2E0.tmp
C:\WINDOWS\System32\SET2E1.tmp
C:\WINDOWS\System32\SET2E2.tmp
C:\WINDOWS\System32\SET2E3.tmp
C:\WINDOWS\System32\SET2E9.tmp
C:\WINDOWS\System32\SET2EA.tmp
C:\WINDOWS\System32\SET2EC.tmp
C:\WINDOWS\System32\SET2ED.tmp
C:\WINDOWS\System32\SET2EE.tmp
C:\WINDOWS\System32\SET2F2.tmp
C:\WINDOWS\System32\SET2F3.tmp
C:\WINDOWS\System32\SET2F4.tmp
C:\WINDOWS\System32\SET2F6.tmp
C:\WINDOWS\System32\SET2F7.tmp
C:\WINDOWS\System32\SET2F8.tmp
C:\WINDOWS\System32\SET2F9.tmp
C:\WINDOWS\System32\SET2FA.tmp
C:\WINDOWS\System32\SET2FC.tmp
C:\WINDOWS\System32\SET2FD.tmp
C:\WINDOWS\System32\SET2FE.tmp
C:\WINDOWS\System32\SET2FF.tmp
C:\WINDOWS\System32\SET300.tmp
C:\WINDOWS\System32\SET301.tmp
C:\WINDOWS\System32\SET302.tmp
C:\WINDOWS\System32\SET303.tmp
C:\WINDOWS\System32\SET304.tmp
C:\WINDOWS\System32\SET306.tmp
C:\WINDOWS\System32\SET309.tmp
C:\WINDOWS\System32\SET30A.tmp
C:\WINDOWS\System32\SET30B.tmp
C:\WINDOWS\System32\SET30C.tmp
C:\WINDOWS\System32\SET30F.tmp
C:\WINDOWS\System32\SET310.tmp
C:\WINDOWS\System32\SET311.tmp
C:\WINDOWS\System32\SET312.tmp
C:\WINDOWS\System32\SET313.tmp
C:\WINDOWS\System32\SET319.tmp
C:\WINDOWS\System32\SET31A.tmp
C:\WINDOWS\System32\SET31B.tmp
C:\WINDOWS\System32\SET31C.tmp
C:\WINDOWS\System32\SET31D.tmp
C:\WINDOWS\System32\SET31F.tmp
C:\WINDOWS\System32\SET320.tmp
C:\WINDOWS\System32\SET321.tmp
C:\WINDOWS\System32\SET326.tmp
C:\WINDOWS\System32\SET327.tmp
C:\WINDOWS\System32\SET328.tmp
C:\WINDOWS\System32\SET329.tmp
C:\WINDOWS\System32\SET32A.tmp
C:\WINDOWS\System32\SET32B.tmp
C:\WINDOWS\System32\SET330.tmp
C:\WINDOWS\System32\SET331.tmp
C:\WINDOWS\System32\SET332.tmp
C:\WINDOWS\System32\SET335.tmp
C:\WINDOWS\System32\SET336.tmp
C:\WINDOWS\System32\SET339.tmp
C:\WINDOWS\System32\SET33A.tmp
C:\WINDOWS\System32\SET33E.tmp
C:\WINDOWS\System32\SET340.tmp
C:\WINDOWS\System32\SET341.tmp
C:\WINDOWS\System32\SET343.tmp
C:\WINDOWS\System32\SET344.tmp
C:\WINDOWS\System32\SET345.tmp
C:\WINDOWS\System32\SET346.tmp
C:\WINDOWS\System32\SET348.tmp
C:\WINDOWS\System32\SET34A.tmp
C:\WINDOWS\System32\SET34B.tmp
C:\WINDOWS\System32\SET34C.tmp
C:\WINDOWS\System32\SET34E.tmp
C:\WINDOWS\System32\SET351.tmp
C:\WINDOWS\System32\SET352.tmp
C:\WINDOWS\System32\SET355.tmp
C:\WINDOWS\System32\SET356.tmp
C:\WINDOWS\System32\SET358.tmp
C:\WINDOWS\System32\SET359.tmp
C:\WINDOWS\System32\SET35B.tmp
C:\WINDOWS\System32\SET35C.tmp
C:\WINDOWS\System32\SET35D.tmp
C:\WINDOWS\System32\SET35E.tmp
C:\WINDOWS\System32\SET35F.tmp
C:\WINDOWS\System32\SET364.tmp
C:\WINDOWS\System32\SET365.tmp
C:\WINDOWS\System32\SET366.tmp
C:\WINDOWS\System32\SET369.tmp
C:\WINDOWS\System32\SET36A.tmp
C:\WINDOWS\System32\SET36B.tmp
C:\WINDOWS\System32\SET36C.tmp
C:\WINDOWS\System32\SET36D.tmp
C:\WINDOWS\System32\SET36F.tmp
C:\WINDOWS\System32\SET374.tmp
C:\WINDOWS\System32\SET376.tmp
C:\WINDOWS\System32\SET377.tmp
C:\WINDOWS\System32\SET378.tmp
C:\WINDOWS\System32\SET379.tmp
C:\WINDOWS\System32\SET37A.tmp
C:\WINDOWS\System32\SET37B.tmp
C:\WINDOWS\System32\SET37D.tmp
C:\WINDOWS\System32\SET37E.tmp
C:\WINDOWS\System32\SET380.tmp
C:\WINDOWS\System32\SET381.tmp
C:\WINDOWS\System32\SET382.tmp
C:\WINDOWS\System32\SET383.tmp
C:\WINDOWS\System32\SET384.tmp
C:\WINDOWS\System32\SET385.tmp
C:\WINDOWS\System32\SET386.tmp
C:\WINDOWS\System32\SET387.tmp
C:\WINDOWS\System32\SET388.tmp
C:\WINDOWS\System32\SET389.tmp
C:\WINDOWS\System32\SET38B.tmp
C:\WINDOWS\System32\SET38C.tmp
C:\WINDOWS\System32\SET38D.tmp
C:\WINDOWS\System32\SET38E.tmp
C:\WINDOWS\System32\SET38F.tmp
C:\WINDOWS\System32\SET390.tmp
C:\WINDOWS\System32\SET392.tmp
C:\WINDOWS\System32\SET393.tmp
C:\WINDOWS\System32\SET394.tmp
C:\WINDOWS\System32\SET397.tmp
C:\WINDOWS\System32\SET398.tmp
C:\WINDOWS\System32\SET39B.tmp
C:\WINDOWS\System32\SET39E.tmp
C:\WINDOWS\System32\SET39F.tmp
C:\WINDOWS\System32\SET3A0.tmp
C:\WINDOWS\System32\SET3A1.tmp
C:\WINDOWS\System32\SET3A3.tmp
C:\WINDOWS\System32\SET3A5.tmp
C:\WINDOWS\System32\SET3A6.tmp
C:\WINDOWS\System32\SET3A7.tmp
C:\WINDOWS\System32\SET3A8.tmp
C:\WINDOWS\System32\SET3A9.tmp
C:\WINDOWS\System32\SET3AE.tmp
C:\WINDOWS\System32\SET3AF.tmp
C:\WINDOWS\System32\SET3B0.tmp
C:\WINDOWS\System32\SET3B1.tmp
C:\WINDOWS\System32\SET3B3.tmp
C:\WINDOWS\System32\SET3B5.tmp
C:\WINDOWS\System32\SET3B7.tmp
C:\WINDOWS\System32\SET3B9.tmp
C:\WINDOWS\System32\SET3BA.tmp
C:\WINDOWS\System32\SET3BB.tmp
C:\WINDOWS\System32\SET3BC.tmp
C:\WINDOWS\System32\SET3C0.tmp
C:\WINDOWS\System32\SET3C6.tmp
C:\WINDOWS\System32\SET3C7.tmp
C:\WINDOWS\System32\SET3C8.tmp
C:\WINDOWS\System32\SET3C9.tmp
C:\WINDOWS\System32\SET3CA.tmp
C:\WINDOWS\System32\SET3CC.tmp
C:\WINDOWS\System32\SET3CE.tmp
C:\WINDOWS\System32\SET3D2.tmp
C:\WINDOWS\System32\SET3D4.tmp
C:\WINDOWS\System32\SET3D6.tmp
C:\WINDOWS\System32\SET3D9.tmp
C:\WINDOWS\System32\SET3DF.tmp
C:\WINDOWS\System32\SET3E0.tmp
C:\WINDOWS\System32\SET3E1.tmp
C:\WINDOWS\System32\SET3E3.tmp
C:\WINDOWS\System32\SET3E4.tmp
C:\WINDOWS\System32\SET3E5.tmp
C:\WINDOWS\System32\SET3E7.tmp
C:\WINDOWS\System32\SET3E8.tmp
C:\WINDOWS\System32\SET3EC.tmp
C:\WINDOWS\System32\SET3ED.tmp
C:\WINDOWS\System32\SET3F0.tmp
C:\WINDOWS\System32\SET3F1.tmp
C:\WINDOWS\System32\SET3F2.tmp
C:\WINDOWS\System32\SET3F3.tmp
C:\WINDOWS\System32\SET3F4.tmp
C:\WINDOWS\System32\SET3F6.tmp
C:\WINDOWS\System32\SET3F7.tmp
C:\WINDOWS\System32\SET3F8.tmp
C:\WINDOWS\System32\SET3FA.tmp
C:\WINDOWS\System32\SET3FB.tmp
C:\WINDOWS\System32\SET3FC.tmp
C:\WINDOWS\System32\SET3FD.tmp
C:\WINDOWS\System32\SET3FE.tmp
C:\WINDOWS\System32\SET3FF.tmp
C:\WINDOWS\System32\SET401.tmp
C:\WINDOWS\System32\SET402.tmp
C:\WINDOWS\System32\SET403.tmp
C:\WINDOWS\System32\SET407.tmp
C:\WINDOWS\System32\SET408.tmp
C:\WINDOWS\System32\SET409.tmp
C:\WINDOWS\System32\SET40B.tmp
C:\WINDOWS\System32\SET40D.tmp
C:\WINDOWS\System32\SET40E.tmp
C:\WINDOWS\System32\SET40F.tmp
C:\WINDOWS\System32\SET410.tmp
C:\WINDOWS\System32\SET411.tmp
C:\WINDOWS\System32\SET412.tmp
C:\WINDOWS\System32\SET413.tmp
C:\WINDOWS\System32\SET414.tmp
C:\WINDOWS\System32\SET415.tmp
C:\WINDOWS\System32\SET417.tmp
C:\WINDOWS\System32\SET418.tmp
C:\WINDOWS\System32\SET419.tmp
C:\WINDOWS\System32\SET41B.tmp
C:\WINDOWS\System32\SET41C.tmp
C:\WINDOWS\System32\SET420.tmp
C:\WINDOWS\System32\SET422.tmp
C:\WINDOWS\System32\SET423.tmp
C:\WINDOWS\System32\SET426.tmp
C:\WINDOWS\System32\SET42A.tmp
C:\WINDOWS\System32\SET42E.tmp
C:\WINDOWS\System32\SET430.tmp
C:\WINDOWS\System32\SET432.tmp
C:\WINDOWS\System32\SET434.tmp
C:\WINDOWS\System32\SET435.tmp
C:\WINDOWS\System32\SET436.tmp
C:\WINDOWS\System32\SET437.tmp
C:\WINDOWS\System32\SET438.tmp
C:\WINDOWS\System32\SET439.tmp
C:\WINDOWS\System32\SET43A.tmp
C:\WINDOWS\System32\SET43C.tmp
C:\WINDOWS\System32\SET43E.tmp
C:\WINDOWS\System32\SET441.tmp
C:\WINDOWS\System32\SET442.tmp
C:\WINDOWS\System32\SET444.tmp
C:\WINDOWS\System32\SET445.tmp
C:\WINDOWS\System32\SET447.tmp
C:\WINDOWS\System32\SET449.tmp
C:\WINDOWS\System32\SET44A.tmp
C:\WINDOWS\System32\SET44B.tmp
C:\WINDOWS\System32\SET44C.tmp
C:\WINDOWS\System32\SET44D.tmp
C:\WINDOWS\System32\SET44E.tmp
C:\WINDOWS\System32\SET44F.tmp
C:\WINDOWS\System32\SET451.tmp
C:\WINDOWS\System32\SET453.tmp
C:\WINDOWS\System32\SET457.tmp
C:\WINDOWS\System32\SET459.tmp
C:\WINDOWS\System32\SET45B.tmp
C:\WINDOWS\System32\SET463.tmp
C:\WINDOWS\System32\SET465.tmp
C:\WINDOWS\System32\SET467.tmp
C:\WINDOWS\System32\SET468.tmp
C:\WINDOWS\System32\SET469.tmp
C:\WINDOWS\System32\SET46A.tmp
C:\WINDOWS\System32\SET46B.tmp
C:\WINDOWS\System32\SET46D.tmp
C:\WINDOWS\System32\SET46F.tmp
C:\WINDOWS\System32\SET470.tmp
C:\WINDOWS\System32\SET471.tmp
C:\WINDOWS\System32\SET472.tmp
C:\WINDOWS\System32\SET474.tmp
C:\WINDOWS\System32\SET475.tmp
C:\WINDOWS\System32\SET477.tmp
C:\WINDOWS\System32\SET47C.tmp
C:\WINDOWS\System32\SET480.tmp
C:\WINDOWS\System32\SET487.tmp
C:\WINDOWS\System32\SET488.tmp
C:\WINDOWS\System32\SET48A.tmp
C:\WINDOWS\System32\SET48B.tmp
C:\WINDOWS\System32\SET48C.tmp
C:\WINDOWS\System32\SET48D.tmp
C:\WINDOWS\System32\SET48F.tmp
C:\WINDOWS\System32\SET493.tmp
C:\WINDOWS\System32\SET497.tmp
C:\WINDOWS\System32\SET498.tmp
C:\WINDOWS\System32\SET49E.tmp
C:\WINDOWS\System32\SET4A0.tmp
C:\WINDOWS\System32\SET4A5.tmp
C:\WINDOWS\System32\SET4A9.tmp
C:\WINDOWS\System32\SET4AF.tmp
C:\WINDOWS\System32\SET4B3.tmp
C:\WINDOWS\System32\SET4B5.tmp
C:\WINDOWS\System32\SET4BC.tmp
C:\WINDOWS\System32\SET4BF.tmp
C:\WINDOWS\System32\SET4C0.tmp
C:\WINDOWS\System32\SET4C2.tmp
C:\WINDOWS\System32\SET4C6.tmp
C:\WINDOWS\System32\SET4CB.tmp
C:\WINDOWS\System32\SET4D0.tmp
C:\WINDOWS\System32\SET4DE.tmp
C:\WINDOWS\System32\SET4E4.tmp
C:\WINDOWS\System32\SET4E6.tmp
C:\WINDOWS\System32\SET4E8.tmp
C:\WINDOWS\System32\SET4EA.tmp
C:\WINDOWS\System32\SET4EC.tmp
C:\WINDOWS\System32\SET4EF.tmp
C:\WINDOWS\System32\SET4F1.tmp
C:\WINDOWS\System32\SET4F5.tmp
C:\WINDOWS\System32\SET4F9.tmp
C:\WINDOWS\System32\SET504.tmp
C:\WINDOWS\System32\SET506.tmp
C:\WINDOWS\System32\SET507.tmp
C:\WINDOWS\System32\SET508.tmp
C:\WINDOWS\System32\SET509.tmp
C:\WINDOWS\System32\SET50A.tmp
C:\WINDOWS\System32\SET50B.tmp
C:\WINDOWS\System32\SET50C.tmp
C:\WINDOWS\System32\SET516.tmp
C:\WINDOWS\System32\SET519.tmp
C:\WINDOWS\System32\SET51B.tmp
C:\WINDOWS\System32\SET51E.tmp
C:\WINDOWS\System32\SET521.tmp
C:\WINDOWS\System32\SET524.tmp
C:\WINDOWS\System32\SET528.tmp
C:\WINDOWS\System32\SET534.tmp
C:\WINDOWS\System32\SET535.tmp
C:\WINDOWS\System32\SET53A.tmp
C:\WINDOWS\System32\SET53B.tmp
C:\WINDOWS\System32\SET53C.tmp
C:\WINDOWS\System32\SET541.tmp
C:\WINDOWS\System32\SET554.tmp
C:\WINDOWS\System32\SET55C.tmp
C:\WINDOWS\System32\SET55F.tmp
C:\WINDOWS\System32\SET561.tmp
C:\WINDOWS\System32\SET568.tmp
C:\WINDOWS\System32\SET569.tmp
C:\WINDOWS\System32\SET56A.tmp
C:\WINDOWS\System32\SET56C.tmp
C:\WINDOWS\System32\SET56D.tmp
C:\WINDOWS\System32\SET56E.tmp
C:\WINDOWS\System32\SET56F.tmp
C:\WINDOWS\System32\SET571.tmp
C:\WINDOWS\System32\SET572.tmp
C:\WINDOWS\System32\SET573.tmp
C:\WINDOWS\System32\SET574.tmp
C:\WINDOWS\System32\SET576.tmp
C:\WINDOWS\System32\SET579.tmp
C:\WINDOWS\System32\SET57B.tmp
C:\WINDOWS\System32\SET57E.tmp
C:\WINDOWS\System32\SET57F.tmp
C:\WINDOWS\System32\SET580.tmp
C:\WINDOWS\System32\SET581.tmp
C:\WINDOWS\System32\SET582.tmp
C:\WINDOWS\System32\SET584.tmp
C:\WINDOWS\System32\SET585.tmp
C:\WINDOWS\System32\SET586.tmp
C:\WINDOWS\System32\SET589.tmp
C:\WINDOWS\System32\SET58A.tmp
C:\WINDOWS\System32\SET58C.tmp
C:\WINDOWS\System32\SET58D.tmp
C:\WINDOWS\System32\SET58F.tmp
C:\WINDOWS\System32\SET590.tmp
C:\WINDOWS\System32\SET593.tmp
C:\WINDOWS\System32\SET594.tmp
C:\WINDOWS\System32\SET596.tmp
C:\WINDOWS\System32\SET597.tmp
C:\WINDOWS\System32\SET59A.tmp
C:\WINDOWS\System32\SET59C.tmp
C:\WINDOWS\System32\SET59E.tmp
C:\WINDOWS\System32\SET59F.tmp
C:\WINDOWS\System32\SET5A0.tmp
C:\WINDOWS\System32\SET5A2.tmp
C:\WINDOWS\System32\SET5A3.tmp
C:\WINDOWS\System32\SET5A7.tmp
C:\WINDOWS\System32\SET5A8.tmp
C:\WINDOWS\System32\SET5AC.tmp
C:\WINDOWS\System32\SET5AD.tmp
C:\WINDOWS\System32\SET5AE.tmp
C:\WINDOWS\System32\SET5B2.tmp
C:\WINDOWS\System32\SET5B4.tmp
C:\WINDOWS\System32\SET5B6.tmp
C:\WINDOWS\System32\SET5B7.tmp
C:\WINDOWS\System32\SET5BA.tmp
C:\WINDOWS\System32\SET5BC.tmp
C:\WINDOWS\System32\SET5BE.tmp
C:\WINDOWS\System32\SET5BF.tmp
C:\WINDOWS\System32\SET5C2.tmp
C:\WINDOWS\System32\SET5C3.tmp
C:\WINDOWS\System32\SET5C4.tmp
C:\WINDOWS\System32\SET5C7.tmp
C:\WINDOWS\System32\SET5C9.tmp
C:\WINDOWS\System32\SET5CD.tmp
C:\WINDOWS\System32\SET5CF.tmp
C:\WINDOWS\System32\SET5D0.tmp
C:\WINDOWS\System32\SET5D1.tmp
C:\WINDOWS\System32\SET5D4.tmp
C:\WINDOWS\System32\SET5D5.tmp
C:\WINDOWS\System32\SET5D9.tmp
C:\WINDOWS\System32\SET5DA.tmp
C:\WINDOWS\System32\SET5DF.tmp
C:\WINDOWS\System32\SET5E1.tmp
C:\WINDOWS\System32\SET5E3.tmp
C:\WINDOWS\System32\SET5E4.tmp
C:\WINDOWS\System32\SET5E7.tmp
C:\WINDOWS\System32\SET5E9.tmp
C:\WINDOWS\System32\SET5EC.tmp
C:\WINDOWS\System32\SET5EF.tmp
C:\WINDOWS\System32\SET5F1.tmp
C:\WINDOWS\System32\SET744.tmp
C:\WINDOWS\System32\SET74A.tmp
C:\WINDOWS\System32\SET770.tmp
C:\WINDOWS\System32\SET776.tmp
¤¤¤¤¤¤¤¤¤¤ Keys :
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Install.exe"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe"
================
Other infections
================
catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-31 11:56:03
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations"=str(7):"d\5\xe650\30(\34¨\xffffn lËÊ\0\0 \1\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\0\xffff\xffff\0\0\0\0\0\0\0\0'\0\4\0\x30303bt\xffc8\xffffv\35\4\0\0\0X4\xffff\xffff\a\0 \31\0\xffff\xffff\20\0\0\0\30\0Þ\0\x88\0\27\0JvQiktreSrie\xff88\xffffn \x2596¢/Ê\0\0\xded8\b\1\0\0\0ø4\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\f\0\0\0\0\0\0\0\a\0&\0{0\x30636\x2d3056\x312d1\x2d33a8\x302d\x31300af\x336637\xffc0\xfffflvcoinst.dll,LvCoInstaller\0\00012\xffe0\xffff7&23e4f959&0\0\32\xff70\xffffc:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll\0TEM¨\xffff{17CCA71B-ECD7-11D0-B908-00A0C9223196}\073f\b\0\x3030\x3130\xffd8\xffffv\f\4\4\0\1\32Cpblte(*\xffe0\xffffv\b\xa8\05\3\0\1.Scrt\xfff0\xffffl\1È5\xe2d0\xe465\xfff0\xffffl\1X4d\x29c4\b\0\0OX\xffff\??\STORAGE#RemovableMedia#7&127252a6&0&RM#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}8¨\xffffn \x9ff0Ø\xeddeÉ\0\0Ø\0\0\0\0\0\xffff\xffff\xffff\xffff\t\0h4\0\xffff\xffff\0\0\0\0 \0$\0\17\0\4\0\x30301_t \xffff{4D36E967-E325-11CE-BFC1-08002BE10318}\0015\0ro\xffd8\xffffv\16\b\0€4\3\0\18DieDtDt2\xffd8\xffffv\n\22\04\1\0\1MDieDtpro\xffd8\xffffv\r\26\04\1\0\1CDieVrin8\xffe0\xffffv\5\24\0x4\1\0\0017Cas4\xffe8\xffffDiskDrive\0\xffe8\xffffgendisk\0S\0\xff88\xffffn X®/Ê\0\0H4\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\0\xffff\xffff\0\0\0\0\0\0\0\0\0\0&\0{\x3064aa\x2d34b1\x312d1\x2d3299\x302d00f9107\xff88\xffffn X®/Ê\0\0\x2a40\2\1\0\0\0¨4\xffff\xffff\0\0\xffff\xffff\0\xffff\xffffv\0\0\0\0\0\0\0006\0&\0{\x3064aa\x2d34b1\x312d1\x2d3299\x302d00f910C\xffd8\xffffv\f\xbe\0€6\1\0\1\SmoiLn01\b\0\a\0\xffe0\xffffv\2\4\xffff\\?\Root#SYSTEM#0000#{07dad660-22f1-11d1-a9f4-00c04fbbde8f}\{70bc06e0-5666-11d3-a184-00105aef9f33}&GLOBAL\0\xfff0\xffffl\1\x32084u\x2e31\xfff0\xffffl\1 4\xe918H\b\0cI\xffc8\xffffUSBSTOR\Disk\0USBSTOR\RAW\0\0\xff98\xffffn X®/Ê\0\0À4\0\0\0\0\xffff\xffff\xffff\xffff\2\0X\31\0\xffff\xffff\0\0\0\0\30\0N\0\0\0\21\0Dvc aaeesubC\xffd8\xffffv\t\4\xffff\xffff\f\0\0\0\0\0\0\0\a\0&\0{0\x30636\x2d3056\x312d1\x2d33a8\x302d\x31300af\x33663\0\xffd8\xffffv\v\4\b\0\2\0\6\0\f\00f\x31308\x3130\x3030\0N\xffd8\xffffv\tN\0¸5\1\0\1.CasUD\0e\0\xfff8\xffff@4\xffd8\xffffv\tN\0È4\1\0\1\eCasUD\e\x1b40\e\xfff8\xffff¸4\xff98\xffffn 8-Ê\0\0\xe470\b\1\0\0\0à4\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\30\0\0\0\0\0\0\0\16\0\21\0Vd0f&i\x305f1\x2863\e\31\xfff0\xffffBase\0H¨\xffffn ‹\xeddeÉ\0\0P4\0\0\0\0\xffff\xffff\xffff\xffff\1\04\0\xffff\xffff\16\0\0\0\30\0\xa4\0\0\0\1\0#\0\xffff\0\xffff\xffff\0\0\0\0\0\0\0\0\0\0&\0\x307b7a6\x2d30\x3232f\x312d1\x2d31af\x302d00fbef5\xff70\xffffl\fˆ\3@š\xfe58\3¢“p\4‘\x848\4Õ\xe95f\xcd0\4Tv°\4\xa848ƒh\4\xe488H\4\x1bef×\x1c50\4)\xf549\x2020*D\xd818\x20c0\4\xf694¶\x24b0\4W\x3229\x24b0\4W\x3229F~1\BITDEF~1\qua\xffe0\xffffv\a\24\0¸ \1\0\0011Ifah\b\0\xab001\xfff8\xffffh4\xffe0\xffffLegacyDriver\0\0\xffd8\xffffv\n \0@4\a\0\1\0HrwrI\0`4\xffe8\xffffMicrosoft\0\xffd8\xffffv\n\22\0è4\1\0\1\0DvcDstni¨\xffffSTORAGE\RemovableMedia\7&127252a6&0&RM\0\0#79\x3036\x31305\x2646\x2330{35\x3033\x2d37bb\x312d1\x2d309\x3266\x302d009ebb\0\xfff0\xffffl\1h4#\0\xffe0\xffffv\5\32\0@8\1\0\1.Cas\0¨\xffffn \x2292
-Ê\0\0@6\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\1\0\a\0Lgof\xffd8\xffffSTORAGE\Volume\0\0t\0\xffd8\xffffv\16N\0X4\1\0\1\0DvcIsac\0\xffe0\xffffLegacyDriver\0004\xffd8\xffffv\tN\0ð4\1\0\1\0CasUDin\0¨\xffffn \x2596¢/Ê\0\0 4\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\0\0\a\0Lgof\xffe8\xffffProfos\0\0\x2140&X\xffffn B‚\xeddeÉ\0\0h\2\1\0\0\0è4\xffff\xffff\1\0ø4\0\xffff\xffff\16\0\0\0\34\0N\0\1\0Q\0\x2323\x233fSOA\x2345Rmvbeei#&222\x2636\x2630R#\x3335f\x33360-6\x2d661\x3064-4\x2d32\x3030\x3061c1f8\x307d0\0\0X\xffff\\?\STORAGE#RemovableMedia#7&127252a6&0&RM#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\0\xffd8\xffffv\20\20\04\1\0\0014MthnDvcI\xffd8\xffffv\f>\0¸4\1\0\1qFinlNmio\xfff0\xffffMEDIA\0\xffe0\xffffv\2\4\b\xffff\xffff\r\04\x24b8+\xffff\xffff"\0\0\0&\0\xbe\0\0\0\f\0BO662\x3333v\f\xffd0\xffffv\24\4l\1°4Q\xd9f1\xffe0\xffffv\b\xa8\0x4\3\0\1iScrt\xffd8\xffffv\f\xa4\0ð4\1\0\1cSmoiLnte\xffd8\xffffv\16N\04\1\0\1\0DvcIsac4\xfff0\xffff.NT\0ah\xffe0\xffffv\5\f\04\1\0\1\0Casi\b\0\x663.\xffd0\xffffv\0230\0\xaac04\1\0\0014LctoIfrain\0\35\xffd8\xffffv\168\0À4\a\0\1NCIsalr\x3233M\xffd8\xffffv\f\4\16Z\0 6\1\0\1eDvcIsacI\xffd8\xffffv\v\4lter\0ie\b\xff88\xffffn X®/Ê\0\0\x528\16\1\0\0\0@4\xffff\xffff\0\0\xffff\xffff\0\xffff\xffff\f\0\0\0\0\0\0\0\0\0&\0\x307b38c\x2d36e9-d\x2d62b9-d\x323618eaA\xffd8\xffffv\v\4\0\0\xfff0\xffffl\1€4\x2140&\b\0\0\0hioiLn\0\0\xffe8\xffffUSB Mouse\0\xffe0\xffffv\6\4\1.LctoIfraincy\xfff0\xffff`X\x9fe0X\0s\xffe0\xffffv\a\22\0È4\1\0\1OSrie\xffd8\xffffv\f\4e¨\xffffn ²°/Ê\0\0\x32084\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\0\0\a\0Lgof\xfff0\xffffl\1\x33604d\x29c4\b\0Ôɸ\xffffv0\xa2\0€4\3\0\1\0\?Vlm{\x32309\x3035\x2d365c\x312d1\x2d6596\x302d\x31303\x3337394\xffd8\xffffv\f\24\04\1\0\0014PoieNmeD\xfff0\xffff\0\0\0è4\xffff\xffff\1\0X3\x24b8+\xffff\xffff\b\0\0\0\30\0\4\0õ\0\17\0LGC_MASV¨\xffffn jGÊ\0\0 4\0\0\1\0\xffff\xffff\x378\6\0x4\x24b8+\xffff\xffff\16\0\0\0\26\0N\0\0\0\4\0\x3030\x3030\0\0\xffe0\xffffv\a\22\0ø4\1\0\1\0Srie\xffe8\xffffWmiApSrv\0\0\xffe0\xffffv\6\4\0DvcDs\0\0\0\xffc8\xffffCarte de performance WMI\0\0\xffe0\xffffØ4404X4˜44\0\0\xffe0\xffffv\3\2X4\3\0\1\37FreBfeDphST\37\xfff0\xffff\x20301\x32204˜\37\xffd8\xffffv\n\22\04\3\0\1\373_rve\37€\37\xffe8\xffffSaiPei\x2e77bp\37\xffd8\xffffv\16\2\37\xffd8\xffffv\r\xbf\004\3\0\1\37MiVdoT\xdb4c\378\xffff1Bihns\x303d\x302e,otat\x2e31\x2c30Strto=\x302e,am=\x302e,u\x303d\x302e\x323b:rgtes\x312d\x2e30\x2c30Cnrs=\x302e,auain\x2e31\x2c30Gma\x2e33\x2c30He\x2e3003Bihns=\x302e,otat\x2e31\x2c30Strto=\x302e,am\x303d\x302e,u\x303d\x302e\0\xe618\37\xffd8\xffffv\t\x80\0 4\3\0\1\37DL\x2036L\xe744\37\xe790\37\xff78\xffff\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\xeb48\37\xffd8\xffffv\n\\0Ð4\3\0\1(FleDt(\xf358( \xffff\2\0\0 \3\0\0\00\x3369\1\0\0\0\1\0\1\0Ô\00\x3379\0\0ä\0ô\0D\01\x3369\1\0\0\0\1\0\1\0\00\x3379\0\0ä\0ô\0D\02\x3369\r\0\xffff\xffff\5\0\1\0\00\x3379\0\0ä\0$\01\x3379\0\0ä\0$\02\x3379\0\0ä\0$\03\x3379\0\0ä\04\04\x3379\0\0ä\0$\0D\0\x1be1\xdff2\xf70fй\00\x3369\t\0\0\0\1\0\1\0ˆ\00\x3379\0\0˜\0¨\0X\01\x3369\1\0\0\0\1\0\1\0¸\00\x3379\0\0˜\0¨\0X\02\x3369\1\0\0\0\1\0\1\0È\00\x3379\0\0˜\0¨\0X\03\x3369\5\0\xffff\xffff\1\0\1\0Ø\00\x3379\0\0è\0ø\0X\04\x3369\5\0\xffff\xffff\1\0\1\0Ø\00\x3379\0\0è\0\0X\05\x3369\5\0\xffff\xffff\b\0\1\0\00\x3379\0\0˜\0(\01\x3379\0\0˜\0(\02\x3379\0\0˜\0(\03\x3379\0\0˜\0\x238\04\x3379\0\0˜\0(\05\x3379\0\0˜\0\x238\06\x3379\0\0˜\0\x248\07\x3379\0\0˜\0\x248\0X\0\x1ce1\xdff2\xf70fй\x2000¯\xe456\x1be1\xdff2\xf70fй\xffffv\v\4\16\x30b0\16\x3080\16Ð\31*¨\xffffn B‚\xeddeÉ\0\0h4\0\0\0\0\xffff\xffff\xffff\xffff\1\0È4\0\xffff\xffff\16\0\0\0\30\0\xa4\0\0\0\1\0#\0ø\37¸\37h\37H\37ð\37à\37€\37°\37\37à\37@\37x\37 \37¨\37`\37ˆ\37°\37à\37\37P\37 \37H\37€\37È\37x\37\xd7b8\37\xd7f0\37\xd828\37\xd868\37\xd8a8\37\xd8d8\37\xd910\37\xda18\37\xda50\37\xd948\37\xd980\37\xd9b0\37\xda78\37\xd9e8\37\xdab0\37\xdbe0\37\xdc10\37\xdaf0\37\xdb18\37\xdb48\37\xdb80\37\xdbb8\37\xdf60\37\xdf98\37\xdfc0\37\xde88\37\xdec8\37\xdc60\37\xdc90\37\xdde0\37\xde10\37\xdcb8\37\xdce8\37(\37\37\xe0f0\37\xe128\37\xe160\37\xe1a0\37\xe1d8\37\xe408\37\xe438\37\xe288\37\xe2d0\37\xe300\37\xe330\37\xe368\37\xe3a0\37\xe698\37\xe3d8\37\xe6d0\37\xe470\37\xe4a0\37\xe4e0\37\xe518\37\xe550\37\xe578\37\xe598\37\xe5c0\37\xe5e8\37\xe618\37\xe640\37\xe668\37\xe970\37\xe998\37\xe9c0\37\xe9e8\37\xe708\37\xe738\37\xe768\37\xe790\37\xe7c0\37\xe7f8\37\xe848\37\xe880\37\xe8d8\37\xe930\37\xec88\37\xece0\37\xed18\37\xed48\37\xed70\37\xeda8\37\xedd8\37\xee00\37\xee38\37\xee78\37\xeea8\37\xeed8\37\xef18\37\xef50\37\xef90\37\xefd0\37\xf020\37\xf060\37\xf098\37\xf0d8\37\xee88(\xeec0(\xef08(\xef50(\x1af8)\x1bc8)\xeac8\37\xeb48\37\xf4b0(\xf4e0(\xf020(\xf048(\xf070(\xf098(\xf2c8(\xf2f8(\xf328(\xf358(Ø((8(¸(ð(((X(p(˜4¸4Ø4°(è(((p((4h4¨4Ð44ø4Ð4h7~1\Temp\{93BE784B-832A-44D3-B073-F86B1C7489EC}\{1735ad57-fd6e-4eb5-a276-56c2574d6412}\atiiemp\CCI3\WINDOWSNDOWS\symp\0!\??\2\SET445\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\xffd8\xffffv\16\4\1eCSD?¨\xffffn 8@\xeddeÉ\0\0H.\0\0\0\0\xffff\xffff\xffff\xffff\b\084\0\xffff\xffff\0\0\0\0 \0"\0\17\0\4\0\x30301\0\0\xffd8\xffffvolume_install\0\0\0\0\xffd8\xffffv\f\24\0X\e\1\0\1\0PoieNm\0\0\xffd8\xffffv\16\b\0\27\3\0\1\0DieDtDt\0\xffd8\xffffv\n\22\0\e\1\0\1\0DieDt\0\0\0\xffe0\xffff5.1.2600.0\0\0\0\0\xffd8\xffffv\tN\0¨4\1\0\1\0CasUDe\0\0\xfff8\xffffè4\xffd8\xffffv\16\34\0P4\1\0\1\16DcSbeMs\16\xffe0\xffff255.255.255.0\0\xffe8\xffff0.0.0.0\0à4\xffc0\xffffv&$\0H4\3\0\1\0{957\x2d3067-9\x2d3888\x332d\x32427D\x333495\0¨\xffffn Æ\x2adfÊ\0\0°4\0\0\1\0\xffff\xffff\x1930\6\0¨+\x24b8+\xffff\xffff\16\0\0\0\26\0N\0\0\0\4\0\x3030\x3030rt\xfff8\xffff@4\xffe0\xffffComposite.Dev\0 \xffffn ö\x26a3ÔÉ\0\0p\t\2\0\0\0h8\xffff\xffff\1\03à@\xffff\xffff$\0\0\0\16\0>\0\0\0\v\0AEvnLg\x3201\xa64\xffd8\xffffv\20\x84\0È4\1\0\1\26EetesgFl\xfff0\xffff.NT\0\x2140&\xffd8\xffffv\r\32\04\1\0\1\0DcIAdes\0\xffe0\xffff192.168.0.14\0\0\xffd8\xffffv\r\32\0P4\1\0\1\0DcIAdes\0\xffe0\xffff192.168.0.14\0\0\xffd8\xffffv\16\34\0˜4\1\0\1\0DcSbeMs\0\xffe0\xffff255.255.255.0\0\xffe0\xffffv\5\4re\0\0\0\xffe0\xffff192.168.0.1\0\0\0\xffd8\xffffv\n\30\0¸4\1\0\1\0DcSre\0\0\0\xffe0\xffff192.168.0.1\0\0\0\xffe0\xffffv\2\4ndie\0\0\0\xffe0\xffffv\2\4v\27\4\x9ff04\1\0\1qCasU\xffd8\xffffv\20\32\0\xd8784\1\0\0014MthnDvcI\xff70\xffffØ\16w\xa8c0bClass_00&Prot_00\0USB\DevClass_00&SubClass_00\0USB\DevClass_00\0USB\COMPOSITE\0\0\0\xe618\37\xffd8\xffffv\n"\0`4\1\0\1\0DieDs\0\0\0\xffd8\xffffVolume générique\0\2\xffd8\xffff\xabf844\xab204Ø4\xffff¸4\xffe8\xffff7-1-2001\0l\xfff8\xffff¨4hi\xffff\16\0\0\0\34\0N\0\0\0Q\0\x2323\x233fSOA\x2345Rmvbeei#&222\x2636\x2630R#\x3335f\x33360-6\x2d661\x3064-4\x2d32\x3030\x3061c1f8}Á\b¨\xffffSTORAGE\RemovableMedia\7&127252a6&0&RM\0\0\0\xffff\xffff\16\0\0\0\30\0\xa4\0\0\0\1\0#\0\xffe8\xffffMicrosoft\0\xffe0\xffffv\b\4\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\0\0\a\0Lgof¨\xffffn 8-Ê\0\084\0\0\0\0\xffff\xffff\xffff\xffff\0\0\xffff\xffff\x24b8+\xffff\xffff\0\0\0\0\0\0\0\0\1\0\a\0Lgof¨\xffff{36FC9E60-C465-11CF-8056-444553540000}\0\0oe\xfff8\xffff¨4¨\xffff{71A27CDD-812A-11D0-BEC7-08002BE2092F}\01\0\0\xff98\xffffn 8-Ê\0\084\0\0\0\0\xffff\xffff\xffff\xffff\2\0¨\27\x24b8+\xffff\xffff\0\0\0\0(\0\x9a\0\0\0\21\0Dvc aaees\0v\22\xffd8\xffffv\r\b\0Ð4\1\0\1fIfetoEt3\xffe0\xffff5.1.2600.0\0\0\0\0\xffd8\xffffVolume générique\0 ¨\xffffn Ú?\xeddeÉ\0\0Ø\35\0\0\0\0\xffff\xffff\xffff\xffff\n\0¨4\0\xffff\xffff\0\0\0\0 \0L\0\e\0\4\0\x303026E\xffd8\xffffv\v\4\b\0X5\x24b8+\xffff\xffff\16\0\0\0\30\0X\0\0\0\4\0\x3030\x3030\0\0\xffd8\xffffv\t<\0\xf290<\2\0\1\nIaeah\0\1d\b\0˜4\xffc8\xffffˆ4è4˜3\x176844Ð4x3 4¸,à3X4Ð4h4\xffe0\xffffv\6\4\0\xa9004\1\0\19Dslyae 9\20\0DA\0006-1¨\xffff{8ECC055D-047F-11D1-A537-0000F8753ED1}\0\x3030\0012\xfff0\xffffXX¨X\0}\xffd8\xffffv\f\49&Pid_018c&Rev_0100\0USB\Vid_04f9&Pid_018c\0\0¨\xffffn \xdd09ÓÉ\0\0\x3058\0\0\0\0\0\xffff\xffff\xffff\xffff\t\04\0\xffff\xffff\0\0\0\0 \0006\0\6\0\4\0\x30300\xe618\37\xffe8\xffffusbccgp\0\0\0\xffd8\xffffv\n\32\04\1\0\1SIfeto\ht\xffe0\xffffUSBSTOR_BULK\08\xffd8\xffffv\r\b\0\xffffv\r\26\0p4\1\0\18DieVrin5\xffe0\xffff5.1.2600.0\0:\W\xffd8\xffffv\n\32\0¨4\1\0\1aIfetoSB\0P\xffff\1\x90\0\x9c\0\24\0000\0\2\34\1\0\24ÿ\17\0\0\x500 \0#\0\0\0\x500\22\0\0\0\x500\22\0rt\xfff0\xffff XX·J\xffd8\xffffv\20B\0 4\1\0\0013MthnDvcI¸\xffffusb\class_08&subclass_06&prot_50\0p\xffe0\xffffv\a\26\0`4\1\0\1\0Ifah\xffd8\xffffv\n\16\04\1\0\1\0DvcDscTm\xffe0\xffff3ð3À8\x2d984`8€8ð4\xffd8\xffffv\n\22\0à4\1\0\1uDieDtA/A\xffd8\xffffv\r\26\0ð4\1\0\1aDieVrin\0¸\xffff(Contrôleur hôte USB standard)\0001-0\xffd8\xffffv\16F\0H4\1\0\0014DvcIsac3\b\0¸4\xffd8\xffff\xf0583`4È44@4P4x4 4\x9fc84\xffd8\xffffv\f\4\a\20\0Ð4\1\0\1lSrie \xffffn ö\x26a3ÔÉ\0\0H4\0\0\0\0\xffff\xffff\xffff\xffff\1\04à@\xffff\xffff\0\0\0\0 \0\x84\0\0\0\v\0AEvnLg39\xff78\xffffC:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\EventLogMessages.dll\0¸\xffffACEEventLogSource\0ACEEventLog\0\0\30\x2530\30\xffe0\xffffv\4\4\17\0\0\x500 \0\x220\0\0\24\2\0\0\x500\v\0\0\30ý\2\0\0\x500 \0#\0\0\0\x500\22\0\0\0\x500\22\00009¨\xffffn ž\xef87\0P1€\35\xffff\xffff\0\0\0\0\20\0\xa8\0\0\0\b\0Scrt\xfff0\xffffl\1P4\xe2d0\xe465 \xffff{36FC9E60-C465-11CF-8056-444553540000}\0006\0\0\0\xffd8\xffffv\f\24\004\1\0\1iPoieNmys\xffd8\xffffv\16\b\0ˆ4\3\0\1rDieDtDtS\xffd8\xffffv\nL\04\1\0\0017DieDs812°\xffffPériphérique de stockage de masse USB\0\xfff0\xffffl\1˜4#\0¨\xffffn
â-Ê\0\0P4\0\0\0\0\xffff\xffff\xffff\xffff\1\0(+€\35\xffff\xffff\0\0\0\0\20\0\xa8\0\0\0\b\0Scrt\b\0\0\0\xfff0\xffff\xa938X\xa9a0X\xe2d0\xe465\xff98\xffffn ö\x26a3ÔÉ\0\0H4\0\0\0\0\xffff\xffff\xffff\xffff\1\0ø4à@\xffff\xffff\0\0\0\0 \0\x84\0\1\0\21\0AEvnLgore\0014MthnDvcI\xffd8\xffffstorage\volume\0ieD\xffd8\xffffv\n"\04\1\0\1\0DieDs\0\0\0\xffd8\xffffVolume générique\0\2\xffd8\xffff\x3230\34€-`4ˆ4°4p4˜4è4te\xffe0\xffffwpdmtp.inf\0MsO\xffd8\xffffv\r\x90\0H:\a\0\1nCmailIsu\xffd0\xffff4\xa9784è404X4€4 4H4x4h4v\n¨\xffffn \x9ff0Ø\xeddeÉ\0\0\x2440\36\0\0\0\0\xffff\xffff\xffff\xffff\t\0\xa4a84\0\xffff\xffff\0\0\0\0 \0$\0\17\0\4\0\x30301_t\xfff8\xffff¨4\xfff0\xffff0X˜X\xe2d0\xe465\xffe0\xffffv\6\4\xffffv\v\4 v\xedd5É\0\0x2\0\0\0\0\xffff\xffff\xffff\xffff\n\0x4\0\xffff\xffff\0\0\0\0 \0*\0\0\0\4\0\x3030\x3030 |\xffd0\xffffWUDFCoinstaller.dll\0\0\32\xffd8\xffffv\n\b\0\27\1\0\1PIfetoft\0\xffd8\xffffv\r\b\08\27\1\0\1\32IfetoEt\25\xffd8\xffffv\f\24\0À\e\1\0\1\25PoieNm\xe778\32\xffd8\xffffv\16\b\0x\27\3\0\1\32DieDtDt\e\xffd8\xffffv\n\24\0È\e\1\0\1sDieDt707\xffd8\xffffv\r\34\0\xa5204\1\0\0015DieVrin\25\xffd8\xffffv\np\0Ð7\a\0\1\21HrwrIsFs\xfff8\xffffÐ4¨\xffffn ø\xef89\xffff\16\0\0\0\30\0X\0\0\0\4\0\x3030\x3030ÿ\17¨\xffff{8ECC055D-047F-11D1-A537-0000F8753ED1}\0\0ÿ\17\xff78\xffffc:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe\0-BF\xffc8\xffffWebcam Effects Helper.\0\0n \xffd8\xffff,°,4\x326044À,°4Ø4\xffff\xffff\xffd8\xffffv\f\4\0\0\x500\22\0\0\0\x500\22\0 M\xffd8\xffffv\n\30\0Ð4\1\0\1\17OjcNm\0\1\30\xffd8\xffffv\v.\0X4\1\0\1\aDsrpin\0015\b\0ie\xffe8\xffffTrufos\0sta\xffd8\xffffv\r\b\0\x23d0\27\1\0\0014IfetoEt,\xffd8\xffffv\f\24\0ð\e\1\0\0014PoieNmeD\xffd8\xffffv\16\b\0 \27\3\0\18DieDtDt2\xfff0\xffffl\1P4#\0\xfff0\xffffl\1x5\xe918H \xffffn ü É\0\0`\a\1\0\0\0ð4\xffff\xffff\1\0Ð4\x24b8+\xffff\xffff\b\0\0\0\30\0\4\0\xbe\0\r\0LGC_RFS\0\xffd8\xffffv\v\4v\n\22\0`\e\1\0\1MDieDtpro\xffd8\xffffv\r\26\0°4\1\0\1CDieVrin8\xffe0\xffff5.1.2535.0\0\0 4\xffd8\xffffv\20\20\0°\e\1\0\0014MthnDvcI\xffe0\xffffMTP Device\0\x82 \x83\xffe0\xffffv\5\32\084\1\0\1qCasd\xffe0\xffffLegacyDriver\0i\xfff0\xffffl\1P8\xe918H\xffd8\xffff03È4 4X4\x4de04404¸4(4¨\xffffn ¦è>Ê\0\0Ð\t\1\0\0\0Pilote parent générique USB Microsoft\0\xffd8\xffffv\n6\0À4\1\0\1IDieDssta\xfff0\xffffUSB\0\0\0hi\0\0 4\1\0\1\0(\27è\xef88\30\1\0\0014Srie\xffd8\xffffv\f\4\xff60\xffffn ÂÎ>Ê\0\0h@\1\0\0\0à4\xffff\xffff\1\0ø\32\0\xffff\xffff\16\0\0\0\34\0J\0\0\0O\0\x2323\x233fU\x2342Vd04&i\x305f3\x2335\x3031F1D20\x3037#1403-a\x2d3747-a\x2d66b4537\x3335}\xffd8\xffffP\21˜\21@\21@\24è\21\32°\34\xf6b0'°\t\xffd8\xffff°\t\x980\n¨\21 \32\xe178\32€'À'2 y¨\xffffn ÂÎ>Ê\0\0¨4\0\0\0\0\xffff\xffff\xffff\xffff\1\0X\e\0\xffff\xffff\16\0\0\0\30\0\xa0\0\0\0\1\0#Win\xfff8\xffffP4\xffe0\xffffv\5\32\0ð4\1\0\1yCasp\xfff0\xffff°X8X\xe2d0\xe465\xffd8\xffffv\n$\0\xab804\1\0\1\0DieDsm\0\0¨\xffffn ž\xef87\xffffProcess Monitor\0ys\xffe0\xffffv\6\4\x1a00\30\0t.inf\0004\xffd8\xffffv\20\x84\0è4\1\0\0014EetesgFl\xffd8\xffffUSB DISK 12X \0\0\xffe0\xffffv\5\32\0Ø5\1\0\1vCas\0X\xffff\\?\USB#Vid_054c&Pid_0385#10FA15D5260870#{14480d3f-7a47-4a75-aaef-b14f56397153}\0vi\xffd8\xffffv\r4\04\a\0\0015CmailIsyH\xffffn À‰\xeddeÉ\0\00H\1\0\0\0˜4\xffff\xffff\1\004\0\xffff\xffff\16\0\0\0\34\0x\0\5\0f\0\x2323\x233fUBT\x2352Ds&e\x265fPo_S_IKP\x266fRv\x2e31\x3331#79\x3036\x31305\x2646\x2330{35\x3033\x2d37bb\x312d1\x2d309\x3266\x302d009ebb\0\xffe0\xffffBDA IPSink\0e)\0\xfff0\xffffl\1ð4\xe2d0\xe465\xffe0\xffffv\a\16\04\1\0\1RSrie\xffd8\xffffv\r\26\004\1\0\1\0DieVrin\0\xffe0\xffffv\a\30\0¸4\1\0\1eIfah\xffe0\xffffv\3\24\0h4\1\0\1\0Mguc\xfff0\xffffl\1ø4#\0 \xffffn X2É\0\0`\a\1\0\0\0ø4\xffff\xffff\1\0\xfde83\x24b8+\xffff\xffff\b\0\0\0\30\0\4\0]\0\17\0LGC_DEFR\xffe0\xffff\xda883ˆ4\x2ed86 4\x2f006˜64\xffc8\xffffUSB DISK Pro USB Device\00060\b\0\0\0\xffd8\xffffv\tN\0x4\1\0\1\26CasUD\26\26\xfff0\xffffl\1€4\x2140&\xffc8\xffffUSB Mass Storage Device\0p3\xffd8\xffffvolume_install\0\0\0\0\xffd8\xffffv\f\24\0(4\1\0\1\0PoieNm\0\0\20\0Fdc\0\0\0\xffd8\xffffv\r\x90\09\a\0\0015CmailIs\0\xffd8\xffffLecteur de disque\0\xfff0\xffff°X\a\26\04\1\0\1\5Ifah\xffe0\xffffvolume.inf\0001\0\0\xffd0\xffffv\24\4\0\xaaf84\1\0\1\0Ifeto\0\0\0\xffe0\xffff5.1.2600.0\0\0\0\0\xffe8\xffffl\2à<M(À<íÏ\xffd8\xffffv\f0\0\xaa484\1\0\1\0FinlNm\0\0\xffe8\xffffmouhid\0n\0\0\xffd8\xffffv\16x\0Ð4\1\0\1\0DvcIsac\0\xff80\xffffUSBSTOR\Disk&Ven_&Prod_USB_DISK_Pro&Rev_1.13\5759160015BF&0\0RV¨\xffffn À‰\xeddeÉ\0\0\xa8484\0\0\0\0\xffff\xffff\xffff\xffff\1\0°4\0\xffff\xffff\16\0\0\0\30\0Î\0\0\0\1\0#0\0\0\xffd8\xffffv\fÎ\0 4\1\0\1\0SmoiLn\0\0\xffd8\xffffv\16N\0 4\1\0\1\0DvcIsac\0\xffe0\xffffv\a\16\04\1\0\1.Srie\xffe0\xffffppbipr.dll\0\0\x21c01\xffd8\xffffv\f\4CmailI\xe773\37hi \0\x220\0\0\24\2\0\0\x500\v\0\0\30ý\2\0\0\x500 \0#\0\0\0\x500\22\0\0\0\x500\22\0pp\xffc0\xffffPériphérique USB composite\0'il\xffd8\xffffv\v\4\x2a40\2\34\0\0\0°?\xffff\xffff\0\0\xffff\xffff\0\xffff\xffffÂ\0\0\0\0\0\0\0'\0&\0{5cf\x2d306\x3033\x312d1\x2d3291\x302d00f91de\xff60\xffffn |\xdd2aÓÉ\0\0È4\1\0\0\084\xffff\xffff\1\0 4\0\xffff\xffff\16\0\0\0\34\0F\0\a\0M\0\x2323\x233fU\x2342Vd0f&i\x305f1\x2363BO662\x3333#adb\x3031-\x3335\x2d301\x3264-\x3130\x2d66\x3030\x30634b5e}i¨\xffffn |\xdd2aÓÉ\0\0@4\0\0\0\0\xffff\xffff\xffff\xffff\1\0`4\0\xffff\xffff\16\0\0\0\30\0\x9c\0\0\0\1\0#as \xfff0\xffffl\1à4#\0°\xffffUSB\Vid_04f9&Pid_018c\BROA6F642833\0 se\xffd8\xffffv\f\x9c\0À4\1\0\1eSmoiLnnd\xff60\xffff\\?\USB#Vid_04f9&Pid_018c#BROA6F642833#{a5dcbf10-6530-11d2-901f-00c04fb951ed}\0\xfff8\xffff˜4\xffd8\xffffv\f\x9a\0¸4\1\0\1\0SmoiNmH\25\xfff8\xffff\xdb284X\xffff\\?\STORAGE#RemovableMedia#7&127252a6&0&RM#{53f5630a-b6bf-11d0-94f2-00a0c91efb8b}\0X\xffffn B‚\xeddeÉ\0\0XH\1\0\0\0Ð4\xffff\xffff\1\0Ð4\0\xffff\xffff\16\0\0\0\34\0N\0\1\0Q\0\x2323\x233fSOA\x2345Rmvbeei#&222\x2636\x2630R#\x3335f\x33360-6\x2d661\x3064-4\x2d32\x3030\x3061c1f8\x307d0\0\0\xffd8\xffffv\16F\0ˆ4\1\0\0013DvcIsac2\xfff0\xffffl\1ˆ5
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
▶ Relance List&Kill'em(soit en clic droit pour vista),avec le raccourci sur ton bureau.
mais cette fois-ci :
▶ choisis l'option 2 = Mode Suppression
laisse travailler l'outil.
en fin de scan un rapport s'ouvre
▶ colle le contenu dans ta reponse
mais cette fois-ci :
▶ choisis l'option 2 = Mode Suppression
laisse travailler l'outil.
en fin de scan un rapport s'ouvre
▶ colle le contenu dans ta reponse
Voilà le dernier rapport :
Kill'em by g3n-h@ckm@n 1.1.7.0
User : SYLVIE (Administrateurs) # SAMSUNG-F892200
Update on 30/12/2009 by g3n-h@ckm@n ::::: 23:45
Start at: 13:09:03 | 31/12/2009
Contact : g3n-h@ckm@n sur CCM
Genuine Intel(R) CPU T2250 @ 1.73GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 6.0.2900.5512
Windows Firewall Status : Disabled
AV : Bitdefender Antivirus 8.0 [ (!) Disabled | Updated ]
FW : Bitdefender Firewall[ (!) Disabled ]8.0
C:\ -> Disque fixe local | 86,05 Go (47,01 Go free) | NTFS
D:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running
C:\WINDOWS\System32\smss.exe 876
C:\WINDOWS\system32\csrss.exe 952
C:\WINDOWS\system32\winlogon.exe 980
C:\WINDOWS\system32\services.exe 1024
C:\WINDOWS\system32\lsass.exe 1036
C:\WINDOWS\system32\Ati2evxx.exe 1192
C:\WINDOWS\system32\svchost.exe 1220
C:\WINDOWS\system32\svchost.exe 1284
C:\WINDOWS\System32\svchost.exe 1324
C:\WINDOWS\system32\svchost.exe 1364
C:\WINDOWS\system32\svchost.exe 1420
C:\WINDOWS\system32\svchost.exe 1508
C:\WINDOWS\system32\brsvc01a.exe 1836
C:\WINDOWS\system32\spoolsv.exe 1880
C:\WINDOWS\system32\brss01a.exe 1884
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe 1928
C:\WINDOWS\system32\Ati2evxx.exe 244
C:\WINDOWS\Explorer.EXE 360
C:\Program Files\Java\jre6\bin\jusched.exe 820
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe 828
C:\WINDOWS\RTHDCPL.EXE 780
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe 860
C:\WINDOWS\AGRSMMSG.exe 868
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 900
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe 256
C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe 956
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe 1200
C:\Program Files\Samsung\DisplayManager\DisplayManager.exe 1344
C:\Program Files\Samsung\DisplayManager\dmhkcore.exe 1352
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe 1428
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe 1596
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe 2000
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe 2044
C:\Program Files\SAMSUNG\MagicKBD\MagicKBD.exe 132
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe 384
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe 520
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe 584
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe 628
C:\WINDOWS\system32\ctfmon.exe 640
C:\WINDOWS\system32\svchost.exe 768
C:\Program Files\Java\jre6\bin\jqs.exe 1588
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe 1660
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe 1780
C:\WINDOWS\system32\HPZipm12.exe 2124
C:\Program Files\CyberLink\Shared Files\RichVideo.exe 2192
C:\Documents and Settings\SYLVIE\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe 2240
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 2368
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe 2508
C:\WINDOWS\system32\svchost.exe 2552
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe 2580
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe 2612
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe 2644
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe 2700
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe 3132
C:\WINDOWS\System32\alg.exe 2116
C:\WINDOWS\System32\svchost.exe 2220
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe 3996
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe 4024
C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe 20096
C:\WINDOWS\system32\wbem\wmiprvse.exe 20128
C:\Program Files\BitDefender\BitDefender 2008\seccenter.exe 18904
C:\Program Files\List_Kill'em\List_Kill'em.exe 18932
C:\WINDOWS\system32\cmd.exe 2380
C:\Documents and Settings\SYLVIE\Local Settings\Temp\3AF.tmp\pv.exe 20312
Detections :
==========
¤¤¤¤¤¤¤¤¤¤ Files/folders :
C:\WINDOWS\System32\_004487_.tmp.dll
C:\WINDOWS\System32\_004488_.tmp.dll
C:\WINDOWS\System32\_004489_.tmp.dll
C:\WINDOWS\System32\_004490_.tmp.dll
C:\WINDOWS\System32\_004496_.tmp.dll
C:\WINDOWS\System32\_004497_.tmp.dll
C:\WINDOWS\System32\_004498_.tmp.dll
C:\WINDOWS\System32\_004499_.tmp.dll
C:\WINDOWS\System32\_004500_.tmp.dll
C:\WINDOWS\System32\_004501_.tmp.dll
C:\WINDOWS\System32\_004502_.tmp.dll
C:\WINDOWS\System32\_004503_.tmp.dll
C:\WINDOWS\System32\_004504_.tmp.dll
C:\WINDOWS\System32\_004505_.tmp.dll
C:\WINDOWS\System32\_004506_.tmp.dll
C:\WINDOWS\System32\_004507_.tmp.dll
C:\WINDOWS\System32\_004510_.tmp.dll
C:\WINDOWS\System32\_004511_.tmp.dll
C:\WINDOWS\System32\_004513_.tmp.dll
C:\WINDOWS\System32\_004516_.tmp.dll
C:\WINDOWS\System32\_004517_.tmp.dll
C:\WINDOWS\System32\_004519_.tmp.dll
C:\WINDOWS\System32\_004520_.tmp.dll
C:\WINDOWS\System32\_004521_.tmp.dll
C:\WINDOWS\System32\_004522_.tmp.dll
C:\WINDOWS\System32\_004524_.tmp.dll
C:\WINDOWS\System32\_004525_.tmp.dll
C:\WINDOWS\System32\_004526_.tmp.dll
C:\WINDOWS\System32\_004527_.tmp.dll
C:\WINDOWS\System32\_004529_.tmp.dll
C:\WINDOWS\System32\_004530_.tmp.dll
C:\WINDOWS\System32\_004531_.tmp.dll
C:\WINDOWS\System32\_004532_.tmp.dll
C:\WINDOWS\System32\_004533_.tmp.dll
C:\WINDOWS\System32\_004535_.tmp.dll
C:\WINDOWS\System32\_004536_.tmp.dll
C:\WINDOWS\System32\_004537_.tmp.dll
C:\WINDOWS\System32\_004538_.tmp.dll
C:\WINDOWS\System32\_004539_.tmp.dll
C:\WINDOWS\System32\_004540_.tmp.dll
C:\WINDOWS\System32\_004541_.tmp.dll
C:\WINDOWS\System32\_004544_.tmp.dll
C:\WINDOWS\System32\_004545_.tmp.dll
C:\WINDOWS\System32\_004546_.tmp.dll
C:\WINDOWS\System32\_004548_.tmp.dll
C:\WINDOWS\System32\_004551_.tmp.dll
C:\WINDOWS\System32\_004552_.tmp.dll
C:\WINDOWS\System32\_004557_.tmp.dll
C:\WINDOWS\System32\_004559_.tmp.dll
C:\WINDOWS\System32\_004562_.tmp.dll
C:\WINDOWS\System32\_004564_.tmp.dll
C:\WINDOWS\System32\_004565_.tmp.dll
C:\WINDOWS\System32\_004566_.tmp.dll
C:\WINDOWS\System32\_004567_.tmp.dll
C:\WINDOWS\System32\_004570_.tmp.dll
C:\WINDOWS\System32\_004571_.tmp.dll
C:\WINDOWS\System32\_004572_.tmp.dll
C:\WINDOWS\System32\_004573_.tmp.dll
C:\WINDOWS\System32\_004574_.tmp.dll
C:\WINDOWS\System32\_004579_.tmp.dll
C:\WINDOWS\System32\drivers\_004462_.tmp.dll
C:\WINDOWS\System32\drivers\_004471_.tmp.dll
"C:\WINDOWS\System32\drivers\etc\hosts.msn"
C:\WINDOWS\System32\SET12CD.tmp
C:\WINDOWS\System32\SET12D0.tmp
C:\WINDOWS\System32\SET12D5.tmp
C:\WINDOWS\System32\SET12DA.tmp
C:\WINDOWS\System32\SET12DE.tmp
C:\WINDOWS\System32\SET12E5.tmp
C:\WINDOWS\System32\SET12E8.tmp
C:\WINDOWS\System32\SET12F8.tmp
C:\WINDOWS\System32\SET12FB.tmp
C:\WINDOWS\System32\SET1300.tmp
C:\WINDOWS\System32\SET1305.tmp
C:\WINDOWS\System32\SET1306.tmp
C:\WINDOWS\System32\SET130A.tmp
C:\WINDOWS\System32\SET1311.tmp
C:\WINDOWS\System32\SET1314.tmp
C:\WINDOWS\System32\SET1315.tmp
C:\WINDOWS\System32\SET1331.tmp
C:\WINDOWS\System32\SET1336.tmp
C:\WINDOWS\System32\SET133D.tmp
C:\WINDOWS\System32\SET134B.tmp
C:\WINDOWS\System32\SET1365.tmp
C:\WINDOWS\System32\SET136C.tmp
C:\WINDOWS\System32\SET137A.tmp
C:\WINDOWS\System32\SET228.tmp
C:\WINDOWS\System32\SET229.tmp
C:\WINDOWS\System32\SET22A.tmp
C:\WINDOWS\System32\SET22C.tmp
C:\WINDOWS\System32\SET22E.tmp
C:\WINDOWS\System32\SET230.tmp
C:\WINDOWS\System32\SET237.tmp
C:\WINDOWS\System32\SET238.tmp
C:\WINDOWS\System32\SET23B.tmp
C:\WINDOWS\System32\SET240.tmp
C:\WINDOWS\System32\SET241.tmp
C:\WINDOWS\System32\SET242.tmp
C:\WINDOWS\System32\SET244.tmp
C:\WINDOWS\System32\SET245.tmp
C:\WINDOWS\System32\SET246.tmp
C:\WINDOWS\System32\SET247.tmp
C:\WINDOWS\System32\SET248.tmp
C:\WINDOWS\System32\SET24A.tmp
C:\WINDOWS\System32\SET24B.tmp
C:\WINDOWS\System32\SET24C.tmp
C:\WINDOWS\System32\SET24D.tmp
C:\WINDOWS\System32\SET250.tmp
C:\WINDOWS\System32\SET257.tmp
C:\WINDOWS\System32\SET258.tmp
C:\WINDOWS\System32\SET259.tmp
C:\WINDOWS\System32\SET25A.tmp
C:\WINDOWS\System32\SET25D.tmp
C:\WINDOWS\System32\SET25F.tmp
C:\WINDOWS\System32\SET260.tmp
C:\WINDOWS\System32\SET267.tmp
C:\WINDOWS\System32\SET26A.tmp
C:\WINDOWS\System32\SET26B.tmp
C:\WINDOWS\System32\SET26D.tmp
C:\WINDOWS\System32\SET26E.tmp
C:\WINDOWS\System32\SET26F.tmp
C:\WINDOWS\System32\SET274.tmp
C:\WINDOWS\System32\SET275.tmp
C:\WINDOWS\System32\SET276.tmp
C:\WINDOWS\System32\SET277.tmp
C:\WINDOWS\System32\SET278.tmp
C:\WINDOWS\System32\SET27E.tmp
C:\WINDOWS\System32\SET283.tmp
C:\WINDOWS\System32\SET284.tmp
C:\WINDOWS\System32\SET288.tmp
C:\WINDOWS\System32\SET28C.tmp
C:\WINDOWS\System32\SET293.tmp
C:\WINDOWS\System32\SET294.tmp
C:\WINDOWS\System32\SET296.tmp
C:\WINDOWS\System32\SET299.tmp
C:\WINDOWS\System32\SET29A.tmp
C:\WINDOWS\System32\SET2A3.tmp
C:\WINDOWS\System32\SET2A4.tmp
C:\WINDOWS\System32\SET2A7.tmp
C:\WINDOWS\System32\SET2A9.tmp
C:\WINDOWS\System32\SET2AA.tmp
C:\WINDOWS\System32\SET2AB.tmp
C:\WINDOWS\System32\SET2AC.tmp
C:\WINDOWS\System32\SET2AD.tmp
C:\WINDOWS\System32\SET2BD.tmp
C:\WINDOWS\System32\SET2C2.tmp
C:\WINDOWS\System32\SET2C4.tmp
C:\WINDOWS\System32\SET2C6.tmp
C:\WINDOWS\System32\SET2C7.tmp
C:\WINDOWS\System32\SET2C8.tmp
C:\WINDOWS\System32\SET2CB.tmp
C:\WINDOWS\System32\SET2CC.tmp
C:\WINDOWS\System32\SET2D0.tmp
C:\WINDOWS\System32\SET2D1.tmp
C:\WINDOWS\System32\SET2D4.tmp
C:\WINDOWS\System32\SET2D5.tmp
C:\WINDOWS\System32\SET2D6.tmp
C:\WINDOWS\System32\SET2DB.tmp
C:\WINDOWS\System32\SET2DC.tmp
C:\WINDOWS\System32\SET2DE.tmp
C:\WINDOWS\System32\SET2DF.tmp
C:\WINDOWS\System32\SET2E0.tmp
C:\WINDOWS\System32\SET2E1.tmp
C:\WINDOWS\System32\SET2E2.tmp
C:\WINDOWS\System32\SET2E3.tmp
C:\WINDOWS\System32\SET2E9.tmp
C:\WINDOWS\System32\SET2EA.tmp
C:\WINDOWS\System32\SET2EC.tmp
C:\WINDOWS\System32\SET2ED.tmp
C:\WINDOWS\System32\SET2EE.tmp
C:\WINDOWS\System32\SET2F2.tmp
C:\WINDOWS\System32\SET2F3.tmp
C:\WINDOWS\System32\SET2F4.tmp
C:\WINDOWS\System32\SET2F6.tmp
C:\WINDOWS\System32\SET2F7.tmp
C:\WINDOWS\System32\SET2F8.tmp
C:\WINDOWS\System32\SET2F9.tmp
C:\WINDOWS\System32\SET2FA.tmp
C:\WINDOWS\System32\SET2FC.tmp
C:\WINDOWS\System32\SET2FD.tmp
C:\WINDOWS\System32\SET2FE.tmp
C:\WINDOWS\System32\SET2FF.tmp
C:\WINDOWS\System32\SET300.tmp
C:\WINDOWS\System32\SET301.tmp
C:\WINDOWS\System32\SET302.tmp
C:\WINDOWS\System32\SET303.tmp
C:\WINDOWS\System32\SET304.tmp
C:\WINDOWS\System32\SET306.tmp
C:\WINDOWS\System32\SET309.tmp
C:\WINDOWS\System32\SET30A.tmp
C:\WINDOWS\System32\SET30B.tmp
C:\WINDOWS\System32\SET30C.tmp
C:\WINDOWS\System32\SET30F.tmp
C:\WINDOWS\System32\SET310.tmp
C:\WINDOWS\System32\SET311.tmp
C:\WINDOWS\System32\SET312.tmp
C:\WINDOWS\System32\SET313.tmp
C:\WINDOWS\System32\SET319.tmp
C:\WINDOWS\System32\SET31A.tmp
C:\WINDOWS\System32\SET31B.tmp
C:\WINDOWS\System32\SET31C.tmp
C:\WINDOWS\System32\SET31D.tmp
C:\WINDOWS\System32\SET31F.tmp
C:\WINDOWS\System32\SET320.tmp
C:\WINDOWS\System32\SET321.tmp
C:\WINDOWS\System32\SET326.tmp
C:\WINDOWS\System32\SET327.tmp
C:\WINDOWS\System32\SET328.tmp
C:\WINDOWS\System32\SET329.tmp
C:\WINDOWS\System32\SET32A.tmp
C:\WINDOWS\System32\SET32B.tmp
C:\WINDOWS\System32\SET330.tmp
C:\WINDOWS\System32\SET331.tmp
C:\WINDOWS\System32\SET332.tmp
C:\WINDOWS\System32\SET335.tmp
C:\WINDOWS\System32\SET336.tmp
C:\WINDOWS\System32\SET339.tmp
C:\WINDOWS\System32\SET33A.tmp
C:\WINDOWS\System32\SET33E.tmp
C:\WINDOWS\System32\SET340.tmp
C:\WINDOWS\System32\SET341.tmp
C:\WINDOWS\System32\SET343.tmp
C:\WINDOWS\System32\SET344.tmp
C:\WINDOWS\System32\SET345.tmp
C:\WINDOWS\System32\SET346.tmp
C:\WINDOWS\System32\SET348.tmp
C:\WINDOWS\System32\SET34A.tmp
C:\WINDOWS\System32\SET34B.tmp
C:\WINDOWS\System32\SET34C.tmp
C:\WINDOWS\System32\SET34E.tmp
C:\WINDOWS\System32\SET351.tmp
C:\WINDOWS\System32\SET352.tmp
C:\WINDOWS\System32\SET355.tmp
C:\WINDOWS\System32\SET356.tmp
C:\WINDOWS\System32\SET358.tmp
C:\WINDOWS\System32\SET359.tmp
C:\WINDOWS\System32\SET35B.tmp
C:\WINDOWS\System32\SET35C.tmp
C:\WINDOWS\System32\SET35D.tmp
C:\WINDOWS\System32\SET35E.tmp
C:\WINDOWS\System32\SET35F.tmp
C:\WINDOWS\System32\SET364.tmp
C:\WINDOWS\System32\SET365.tmp
C:\WINDOWS\System32\SET366.tmp
C:\WINDOWS\System32\SET369.tmp
C:\WINDOWS\System32\SET36A.tmp
C:\WINDOWS\System32\SET36B.tmp
C:\WINDOWS\System32\SET36C.tmp
C:\WINDOWS\System32\SET36D.tmp
C:\WINDOWS\System32\SET36F.tmp
C:\WINDOWS\System32\SET374.tmp
C:\WINDOWS\System32\SET376.tmp
C:\WINDOWS\System32\SET377.tmp
C:\WINDOWS\System32\SET378.tmp
C:\WINDOWS\System32\SET379.tmp
C:\WINDOWS\System32\SET37A.tmp
C:\WINDOWS\System32\SET37B.tmp
C:\WINDOWS\System32\SET37D.tmp
C:\WINDOWS\System32\SET37E.tmp
C:\WINDOWS\System32\SET380.tmp
C:\WINDOWS\System32\SET381.tmp
C:\WINDOWS\System32\SET382.tmp
C:\WINDOWS\System32\SET383.tmp
C:\WINDOWS\System32\SET384.tmp
C:\WINDOWS\System32\SET385.tmp
C:\WINDOWS\System32\SET386.tmp
C:\WINDOWS\System32\SET387.tmp
C:\WINDOWS\System32\SET388.tmp
C:\WINDOWS\System32\SET389.tmp
C:\WINDOWS\System32\SET38B.tmp
C:\WINDOWS\System32\SET38C.tmp
C:\WINDOWS\System32\SET38D.tmp
C:\WINDOWS\System32\SET38E.tmp
C:\WINDOWS\System32\SET38F.tmp
C:\WINDOWS\System32\SET390.tmp
C:\WINDOWS\System32\SET392.tmp
C:\WINDOWS\System32\SET393.tmp
C:\WINDOWS\System32\SET394.tmp
C:\WINDOWS\System32\SET397.tmp
C:\WINDOWS\System32\SET398.tmp
C:\WINDOWS\System32\SET39B.tmp
C:\WINDOWS\System32\SET39E.tmp
C:\WINDOWS\System32\SET39F.tmp
C:\WINDOWS\System32\SET3A0.tmp
C:\WINDOWS\System32\SET3A1.tmp
C:\WINDOWS\System32\SET3A3.tmp
C:\WINDOWS\System32\SET3A5.tmp
C:\WINDOWS\System32\SET3A6.tmp
C:\WINDOWS\System32\SET3A7.tmp
C:\WINDOWS\System32\SET3A8.tmp
C:\WINDOWS\System32\SET3A9.tmp
C:\WINDOWS\System32\SET3AE.tmp
C:\WINDOWS\System32\SET3AF.tmp
C:\WINDOWS\System32\SET3B0.tmp
C:\WINDOWS\System32\SET3B1.tmp
C:\WINDOWS\System32\SET3B3.tmp
C:\WINDOWS\System32\SET3B5.tmp
C:\WINDOWS\System32\SET3B7.tmp
C:\WINDOWS\System32\SET3B9.tmp
C:\WINDOWS\System32\SET3BA.tmp
C:\WINDOWS\System32\SET3BB.tmp
C:\WINDOWS\System32\SET3BC.tmp
C:\WINDOWS\System32\SET3C0.tmp
C:\WINDOWS\System32\SET3C6.tmp
C:\WINDOWS\System32\SET3C7.tmp
C:\WINDOWS\System32\SET3C8.tmp
C:\WINDOWS\System32\SET3C9.tmp
C:\WINDOWS\System32\SET3CA.tmp
C:\WINDOWS\System32\SET3CC.tmp
C:\WINDOWS\System32\SET3CE.tmp
C:\WINDOWS\System32\SET3D2.tmp
C:\WINDOWS\System32\SET3D4.tmp
C:\WINDOWS\System32\SET3D6.tmp
C:\WINDOWS\System32\SET3D9.tmp
C:\WINDOWS\System32\SET3DF.tmp
C:\WINDOWS\System32\SET3E0.tmp
C:\WINDOWS\System32\SET3E1.tmp
C:\WINDOWS\System32\SET3E3.tmp
C:\WINDOWS\System32\SET3E4.tmp
C:\WINDOWS\System32\SET3E5.tmp
C:\WINDOWS\System32\SET3E7.tmp
C:\WINDOWS\System32\SET3E8.tmp
C:\WINDOWS\System32\SET3EC.tmp
C:\WINDOWS\System32\SET3ED.tmp
C:\WINDOWS\System32\SET3F0.tmp
C:\WINDOWS\System32\SET3F1.tmp
C:\WINDOWS\System32\SET3F2.tmp
C:\WINDOWS\System32\SET3F3.tmp
C:\WINDOWS\System32\SET3F4.tmp
C:\WINDOWS\System32\SET3F6.tmp
C:\WINDOWS\System32\SET3F7.tmp
C:\WINDOWS\System32\SET3F8.tmp
C:\WINDOWS\System32\SET3FA.tmp
C:\WINDOWS\System32\SET3FB.tmp
C:\WINDOWS\System32\SET3FC.tmp
C:\WINDOWS\System32\SET3FD.tmp
C:\WINDOWS\System32\SET3FE.tmp
C:\WINDOWS\System32\SET3FF.tmp
C:\WINDOWS\System32\SET401.tmp
C:\WINDOWS\System32\SET402.tmp
C:\WINDOWS\System32\SET403.tmp
C:\WINDOWS\System32\SET407.tmp
C:\WINDOWS\System32\SET408.tmp
C:\WINDOWS\System32\SET409.tmp
C:\WINDOWS\System32\SET40B.tmp
C:\WINDOWS\System32\SET40D.tmp
C:\WINDOWS\System32\SET40E.tmp
C:\WINDOWS\System32\SET40F.tmp
C:\WINDOWS\System32\SET410.tmp
C:\WINDOWS\System32\SET411.tmp
C:\WINDOWS\System32\SET412.tmp
C:\WINDOWS\System32\SET413.tmp
C:\WINDOWS\System32\SET414.tmp
C:\WINDOWS\System32\SET415.tmp
C:\WINDOWS\System32\SET417.tmp
C:\WINDOWS\System32\SET418.tmp
C:\WINDOWS\System32\SET419.tmp
C:\WINDOWS\System32\SET41B.tmp
C:\WINDOWS\System32\SET41C.tmp
C:\WINDOWS\System32\SET420.tmp
C:\WINDOWS\System32\SET422.tmp
C:\WINDOWS\System32\SET423.tmp
C:\WINDOWS\System32\SET426.tmp
C:\WINDOWS\System32\SET42A.tmp
C:\WINDOWS\System32\SET42E.tmp
C:\WINDOWS\System32\SET430.tmp
C:\WINDOWS\System32\SET432.tmp
C:\WINDOWS\System32\SET434.tmp
C:\WINDOWS\System32\SET435.tmp
C:\WINDOWS\System32\SET436.tmp
C:\WINDOWS\System32\SET437.tmp
C:\WINDOWS\System32\SET438.tmp
C:\WINDOWS\System32\SET439.tmp
C:\WINDOWS\System32\SET43A.tmp
C:\WINDOWS\System32\SET43C.tmp
C:\WINDOWS\System32\SET43E.tmp
C:\WINDOWS\System32\SET441.tmp
C:\WINDOWS\System32\SET442.tmp
C:\WINDOWS\System32\SET444.tmp
C:\WINDOWS\System32\SET445.tmp
C:\WINDOWS\System32\SET447.tmp
C:\WINDOWS\System32\SET449.tmp
C:\WINDOWS\System32\SET44A.tmp
C:\WINDOWS\System32\SET44B.tmp
C:\WINDOWS\System32\SET44C.tmp
C:\WINDOWS\System32\SET44D.tmp
C:\WINDOWS\System32\SET44E.tmp
C:\WINDOWS\System32\SET44F.tmp
C:\WINDOWS\System32\SET451.tmp
C:\WINDOWS\System32\SET453.tmp
C:\WINDOWS\System32\SET457.tmp
C:\WINDOWS\System32\SET459.tmp
C:\WINDOWS\System32\SET45B.tmp
C:\WINDOWS\System32\SET463.tmp
C:\WINDOWS\System32\SET465.tmp
C:\WINDOWS\System32\SET467.tmp
C:\WINDOWS\System32\SET468.tmp
C:\WINDOWS\System32\SET469.tmp
C:\WINDOWS\System32\SET46A.tmp
C:\WINDOWS\System32\SET46B.tmp
C:\WINDOWS\System32\SET46D.tmp
C:\WINDOWS\System32\SET46F.tmp
C:\WINDOWS\System32\SET470.tmp
C:\WINDOWS\System32\SET471.tmp
C:\WINDOWS\System32\SET472.tmp
C:\WINDOWS\System32\SET474.tmp
C:\WINDOWS\System32\SET475.tmp
C:\WINDOWS\System32\SET477.tmp
C:\WINDOWS\System32\SET47C.tmp
C:\WINDOWS\System32\SET480.tmp
C:\WINDOWS\System32\SET487.tmp
C:\WINDOWS\System32\SET488.tmp
C:\WINDOWS\System32\SET48A.tmp
C:\WINDOWS\System32\SET48B.tmp
C:\WINDOWS\System32\SET48C.tmp
C:\WINDOWS\System32\SET48D.tmp
C:\WINDOWS\System32\SET48F.tmp
C:\WINDOWS\System32\SET493.tmp
C:\WINDOWS\System32\SET497.tmp
C:\WINDOWS\System32\SET498.tmp
C:\WINDOWS\System32\SET49E.tmp
C:\WINDOWS\System32\SET4A0.tmp
C:\WINDOWS\System32\SET4A5.tmp
C:\WINDOWS\System32\SET4A9.tmp
C:\WINDOWS\System32\SET4AF.tmp
C:\WINDOWS\System32\SET4B3.tmp
C:\WINDOWS\System32\SET4B5.tmp
C:\WINDOWS\System32\SET4BC.tmp
C:\WINDOWS\System32\SET4BF.tmp
C:\WINDOWS\System32\SET4C0.tmp
C:\WINDOWS\System32\SET4C2.tmp
C:\WINDOWS\System32\SET4C6.tmp
C:\WINDOWS\System32\SET4CB.tmp
C:\WINDOWS\System32\SET4D0.tmp
C:\WINDOWS\System32\SET4DE.tmp
C:\WINDOWS\System32\SET4E4.tmp
C:\WINDOWS\System32\SET4E6.tmp
C:\WINDOWS\System32\SET4E8.tmp
C:\WINDOWS\System32\SET4EA.tmp
C:\WINDOWS\System32\SET4EC.tmp
C:\WINDOWS\System32\SET4EF.tmp
C:\WINDOWS\System32\SET4F1.tmp
C:\WINDOWS\System32\SET4F5.tmp
C:\WINDOWS\System32\SET4F9.tmp
C:\WINDOWS\System32\SET504.tmp
C:\WINDOWS\System32\SET506.tmp
C:\WINDOWS\System32\SET507.tmp
C:\WINDOWS\System32\SET508.tmp
C:\WINDOWS\System32\SET509.tmp
C:\WINDOWS\System32\SET50A.tmp
C:\WINDOWS\System32\SET50B.tmp
C:\WINDOWS\System32\SET50C.tmp
C:\WINDOWS\System32\SET516.tmp
C:\WINDOWS\System32\SET519.tmp
C:\WINDOWS\System32\SET51B.tmp
C:\WINDOWS\System32\SET51E.tmp
C:\WINDOWS\System32\SET521.tmp
C:\WINDOWS\System32\SET524.tmp
C:\WINDOWS\System32\SET528.tmp
C:\WINDOWS\System32\SET534.tmp
C:\WINDOWS\System32\SET535.tmp
C:\WINDOWS\System32\SET53A.tmp
C:\WINDOWS\System32\SET53B.tmp
C:\WINDOWS\System32\SET53C.tmp
C:\WINDOWS\System32\SET541.tmp
C:\WINDOWS\System32\SET554.tmp
C:\WINDOWS\System32\SET55C.tmp
C:\WINDOWS\System32\SET55F.tmp
C:\WINDOWS\System32\SET561.tmp
C:\WINDOWS\System32\SET568.tmp
C:\WINDOWS\System32\SET569.tmp
C:\WINDOWS\System32\SET56A.tmp
C:\WINDOWS\System32\SET56C.tmp
C:\WINDOWS\System32\SET56D.tmp
C:\WINDOWS\System32\SET56E.tmp
C:\WINDOWS\System32\SET56F.tmp
C:\WINDOWS\System32\SET571.tmp
C:\WINDOWS\System32\SET572.tmp
C:\WINDOWS\System32\SET573.tmp
C:\WINDOWS\System32\SET574.tmp
C:\WINDOWS\System32\SET576.tmp
C:\WINDOWS\System32\SET579.tmp
C:\WINDOWS\System32\SET57B.tmp
C:\WINDOWS\System32\SET57E.tmp
C:\WINDOWS\System32\SET57F.tmp
C:\WINDOWS\System32\SET580.tmp
C:\WINDOWS\System32\SET581.tmp
C:\WINDOWS\System32\SET582.tmp
C:\WINDOWS\System32\SET584.tmp
C:\WINDOWS\System32\SET585.tmp
C:\WINDOWS\System32\SET586.tmp
C:\WINDOWS\System32\SET589.tmp
C:\WINDOWS\System32\SET58A.tmp
C:\WINDOWS\System32\SET58C.tmp
C:\WINDOWS\System32\SET58D.tmp
C:\WINDOWS\System32\SET58F.tmp
C:\WINDOWS\System32\SET590.tmp
C:\WINDOWS\System32\SET593.tmp
C:\WINDOWS\System32\SET594.tmp
C:\WINDOWS\System32\SET596.tmp
C:\WINDOWS\System32\SET597.tmp
C:\WINDOWS\System32\SET59A.tmp
C:\WINDOWS\System32\SET59C.tmp
C:\WINDOWS\System32\SET59E.tmp
C:\WINDOWS\System32\SET59F.tmp
C:\WINDOWS\System32\SET5A0.tmp
C:\WINDOWS\System32\SET5A2.tmp
C:\WINDOWS\System32\SET5A3.tmp
C:\WINDOWS\System32\SET5A7.tmp
C:\WINDOWS\System32\SET5A8.tmp
C:\WINDOWS\System32\SET5AC.tmp
C:\WINDOWS\System32\SET5AD.tmp
C:\WINDOWS\System32\SET5AE.tmp
C:\WINDOWS\System32\SET5B2.tmp
C:\WINDOWS\System32\SET5B4.tmp
C:\WINDOWS\System32\SET5B6.tmp
C:\WINDOWS\System32\SET5B7.tmp
C:\WINDOWS\System32\SET5BA.tmp
C:\WINDOWS\System32\SET5BC.tmp
C:\WINDOWS\System32\SET5BE.tmp
C:\WINDOWS\System32\SET5BF.tmp
C:\WINDOWS\System32\SET5C2.tmp
C:\WINDOWS\System32\SET5C3.tmp
C:\WINDOWS\System32\SET5C4.tmp
C:\WINDOWS\System32\SET5C7.tmp
C:\WINDOWS\System32\SET5C9.tmp
C:\WINDOWS\System32\SET5CD.tmp
C:\WINDOWS\System32\SET5CF.tmp
C:\WINDOWS\System32\SET5D0.tmp
C:\WINDOWS\System32\SET5D1.tmp
C:\WINDOWS\System32\SET5D4.tmp
C:\WINDOWS\System32\SET5D5.tmp
C:\WINDOWS\System32\SET5D9.tmp
C:\WINDOWS\System32\SET5DA.tmp
C:\WINDOWS\System32\SET5DF.tmp
C:\WINDOWS\System32\SET5E1.tmp
C:\WINDOWS\System32\SET5E3.tmp
C:\WINDOWS\System32\SET5E4.tmp
C:\WINDOWS\System32\SET5E7.tmp
C:\WINDOWS\System32\SET5E9.tmp
C:\WINDOWS\System32\SET5EC.tmp
C:\WINDOWS\System32\SET5EF.tmp
C:\WINDOWS\System32\SET5F1.tmp
C:\WINDOWS\System32\SET744.tmp
C:\WINDOWS\System32\SET74A.tmp
C:\WINDOWS\System32\SET770.tmp
C:\WINDOWS\System32\SET776.tmp
¤¤¤¤¤¤¤¤¤¤ Files/folders deleted :
Quarantine :
hosts.msn.Kill'em
SET12CD.tmp.Kill'em
SET12D0.tmp.Kill'em
SET12D5.tmp.Kill'em
SET12DA.tmp.Kill'em
SET12DE.tmp.Kill'em
SET12E5.tmp.Kill'em
SET12E8.tmp.Kill'em
SET12F8.tmp.Kill'em
SET12FB.tmp.Kill'em
SET1300.tmp.Kill'em
SET1305.tmp.Kill'em
SET1306.tmp.Kill'em
SET130A.tmp.Kill'em
SET1311.tmp.Kill'em
SET1314.tmp.Kill'em
SET1315.tmp.Kill'em
SET1331.tmp.Kill'em
SET1336.tmp.Kill'em
SET133D.tmp.Kill'em
SET134B.tmp.Kill'em
SET1365.tmp.Kill'em
SET136C.tmp.Kill'em
SET137A.tmp.Kill'em
SET228.tmp.Kill'em
SET229.tmp.Kill'em
SET22A.tmp.Kill'em
SET22C.tmp.Kill'em
SET22E.tmp.Kill'em
SET230.tmp.Kill'em
SET237.tmp.Kill'em
SET238.tmp.Kill'em
SET23B.tmp.Kill'em
SET240.tmp.Kill'em
SET241.tmp.Kill'em
SET242.tmp.Kill'em
SET244.tmp.Kill'em
SET245.tmp.Kill'em
SET246.tmp.Kill'em
SET247.tmp.Kill'em
SET248.tmp.Kill'em
SET24A.tmp.Kill'em
SET24B.tmp.Kill'em
SET24C.tmp.Kill'em
SET24D.tmp.Kill'em
SET250.tmp.Kill'em
SET257.tmp.Kill'em
SET258.tmp.Kill'em
SET259.tmp.Kill'em
SET25A.tmp.Kill'em
SET25D.tmp.Kill'em
SET25F.tmp.Kill'em
SET260.tmp.Kill'em
SET267.tmp.Kill'em
SET26A.tmp.Kill'em
SET26B.tmp.Kill'em
SET26D.tmp.Kill'em
SET26E.tmp.Kill'em
SET26F.tmp.Kill'em
SET274.tmp.Kill'em
SET275.tmp.Kill'em
SET276.tmp.Kill'em
SET277.tmp.Kill'em
SET278.tmp.Kill'em
SET27E.tmp.Kill'em
SET283.tmp.Kill'em
SET284.tmp.Kill'em
SET288.tmp.Kill'em
SET28C.tmp.Kill'em
SET293.tmp.Kill'em
SET294.tmp.Kill'em
SET296.tmp.Kill'em
SET299.tmp.Kill'em
SET29A.tmp.Kill'em
SET2A3.tmp.Kill'em
SET2A4.tmp.Kill'em
SET2A7.tmp.Kill'em
SET2A9.tmp.Kill'em
SET2AA.tmp.Kill'em
SET2AB.tmp.Kill'em
SET2AC.tmp.Kill'em
SET2AD.tmp.Kill'em
SET2BD.tmp.Kill'em
SET2C2.tmp.Kill'em
SET2C4.tmp.Kill'em
SET2C6.tmp.Kill'em
SET2C7.tmp.Kill'em
SET2C8.tmp.Kill'em
SET2CB.tmp.Kill'em
SET2CC.tmp.Kill'em
SET2D0.tmp.Kill'em
SET2D1.tmp.Kill'em
SET2D4.tmp.Kill'em
SET2D5.tmp.Kill'em
SET2D6.tmp.Kill'em
SET2DB.tmp.Kill'em
SET2DC.tmp.Kill'em
SET2DE.tmp.Kill'em
SET2DF.tmp.Kill'em
SET2E0.tmp.Kill'em
SET2E1.tmp.Kill'em
SET2E2.tmp.Kill'em
SET2E3.tmp.Kill'em
SET2E9.tmp.Kill'em
SET2EA.tmp.Kill'em
SET2EC.tmp.Kill'em
SET2ED.tmp.Kill'em
SET2EE.tmp.Kill'em
SET2F2.tmp.Kill'em
SET2F3.tmp.Kill'em
SET2F4.tmp.Kill'em
SET2F6.tmp.Kill'em
SET2F7.tmp.Kill'em
SET2F8.tmp.Kill'em
SET2F9.tmp.Kill'em
SET2FA.tmp.Kill'em
SET2FC.tmp.Kill'em
SET2FD.tmp.Kill'em
SET2FE.tmp.Kill'em
SET2FF.tmp.Kill'em
SET300.tmp.Kill'em
SET301.tmp.Kill'em
SET302.tmp.Kill'em
SET303.tmp.Kill'em
SET304.tmp.Kill'em
SET306.tmp.Kill'em
SET309.tmp.Kill'em
SET30A.tmp.Kill'em
SET30B.tmp.Kill'em
SET30C.tmp.Kill'em
SET30F.tmp.Kill'em
SET310.tmp.Kill'em
SET311.tmp.Kill'em
SET312.tmp.Kill'em
SET313.tmp.Kill'em
SET319.tmp.Kill'em
SET31A.tmp.Kill'em
SET31B.tmp.Kill'em
SET31C.tmp.Kill'em
SET31D.tmp.Kill'em
SET31F.tmp.Kill'em
SET320.tmp.Kill'em
SET321.tmp.Kill'em
SET326.tmp.Kill'em
SET327.tmp.Kill'em
SET328.tmp.Kill'em
SET329.tmp.Kill'em
SET32A.tmp.Kill'em
SET32B.tmp.Kill'em
SET330.tmp.Kill'em
SET331.tmp.Kill'em
SET332.tmp.Kill'em
SET335.tmp.Kill'em
SET336.tmp.Kill'em
SET339.tmp.Kill'em
SET33A.tmp.Kill'em
SET33E.tmp.Kill'em
SET340.tmp.Kill'em
SET341.tmp.Kill'em
SET343.tmp.Kill'em
SET344.tmp.Kill'em
SET345.tmp.Kill'em
SET346.tmp.Kill'em
SET348.tmp.Kill'em
SET34A.tmp.Kill'em
SET34B.tmp.Kill'em
SET34C.tmp.Kill'em
SET34E.tmp.Kill'em
SET351.tmp.Kill'em
SET352.tmp.Kill'em
SET355.tmp.Kill'em
SET356.tmp.Kill'em
SET358.tmp.Kill'em
SET359.tmp.Kill'em
SET35B.tmp.Kill'em
SET35C.tmp.Kill'em
SET35D.tmp.Kill'em
SET35E.tmp.Kill'em
SET35F.tmp.Kill'em
SET364.tmp.Kill'em
SET365.tmp.Kill'em
SET366.tmp.Kill'em
SET369.tmp.Kill'em
SET36A.tmp.Kill'em
SET36B.tmp.Kill'em
SET36C.tmp.Kill'em
SET36D.tmp.Kill'em
SET36F.tmp.Kill'em
SET374.tmp.Kill'em
SET376.tmp.Kill'em
SET377.tmp.Kill'em
SET378.tmp.Kill'em
SET379.tmp.Kill'em
SET37A.tmp.Kill'em
SET37B.tmp.Kill'em
SET37D.tmp.Kill'em
SET37E.tmp.Kill'em
SET380.tmp.Kill'em
SET381.tmp.Kill'em
SET382.tmp.Kill'em
SET383.tmp.Kill'em
SET384.tmp.Kill'em
SET385.tmp.Kill'em
SET386.tmp.Kill'em
SET387.tmp.Kill'em
SET388.tmp.Kill'em
SET389.tmp.Kill'em
SET38B.tmp.Kill'em
SET38C.tmp.Kill'em
SET38D.tmp.Kill'em
SET38E.tmp.Kill'em
SET38F.tmp.Kill'em
SET390.tmp.Kill'em
SET392.tmp.Kill'em
SET393.tmp.Kill'em
SET394.tmp.Kill'em
SET397.tmp.Kill'em
SET398.tmp.Kill'em
SET39B.tmp.Kill'em
SET39E.tmp.Kill'em
SET39F.tmp.Kill'em
SET3A0.tmp.Kill'em
SET3A1.tmp.Kill'em
SET3A3.tmp.Kill'em
SET3A5.tmp.Kill'em
SET3A6.tmp.Kill'em
SET3A7.tmp.Kill'em
SET3A8.tmp.Kill'em
SET3A9.tmp.Kill'em
SET3AE.tmp.Kill'em
SET3AF.tmp.Kill'em
SET3B0.tmp.Kill'em
SET3B1.tmp.Kill'em
SET3B3.tmp.Kill'em
SET3B5.tmp.Kill'em
SET3B7.tmp.Kill'em
SET3B9.tmp.Kill'em
SET3BA.tmp.Kill'em
SET3BB.tmp.Kill'em
SET3BC.tmp.Kill'em
SET3C0.tmp.Kill'em
SET3C6.tmp.Kill'em
SET3C7.tmp.Kill'em
SET3C8.tmp.Kill'em
SET3C9.tmp.Kill'em
SET3CA.tmp.Kill'em
SET3CC.tmp.Kill'em
SET3CE.tmp.Kill'em
SET3D2.tmp.Kill'em
SET3D4.tmp.Kill'em
SET3D6.tmp.Kill'em
SET3D9.tmp.Kill'em
SET3DF.tmp.Kill'em
SET3E0.tmp.Kill'em
SET3E1.tmp.Kill'em
SET3E3.tmp.Kill'em
SET3E4.tmp.Kill'em
SET3E5.tmp.Kill'em
SET3E7.tmp.Kill'em
SET3E8.tmp.Kill'em
SET3EC.tmp.Kill'em
SET3ED.tmp.Kill'em
SET3F0.tmp.Kill'em
SET3F1.tmp.Kill'em
SET3F2.tmp.Kill'em
SET3F3.tmp.Kill'em
SET3F4.tmp.Kill'em
SET3F6.tmp.Kill'em
SET3F7.tmp.Kill'em
SET3F8.tmp.Kill'em
SET3FA.tmp.Kill'em
SET3FB.tmp.Kill'em
SET3FC.tmp.Kill'em
SET3FD.tmp.Kill'em
SET3FE.tmp.Kill'em
SET3FF.tmp.Kill'em
SET401.tmp.Kill'em
SET402.tmp.Kill'em
SET403.tmp.Kill'em
SET407.tmp.Kill'em
SET408.tmp.Kill'em
SET409.tmp.Kill'em
SET40B.tmp.Kill'em
SET40D.tmp.Kill'em
SET40E.tmp.Kill'em
SET40F.tmp.Kill'em
SET410.tmp.Kill'em
SET411.tmp.Kill'em
SET412.tmp.Kill'em
SET413.tmp.Kill'em
SET414.tmp.Kill'em
SET415.tmp.Kill'em
SET417.tmp.Kill'em
SET418.tmp.Kill'em
SET419.tmp.Kill'em
SET41B.tmp.Kill'em
SET41C.tmp.Kill'em
SET420.tmp.Kill'em
SET422.tmp.Kill'em
SET423.tmp.Kill'em
SET426.tmp.Kill'em
SET42A.tmp.Kill'em
SET42E.tmp.Kill'em
SET430.tmp.Kill'em
SET432.tmp.Kill'em
SET434.tmp.Kill'em
SET435.tmp.Kill'em
SET436.tmp.Kill'em
SET437.tmp.Kill'em
SET438.tmp.Kill'em
SET439.tmp.Kill'em
SET43A.tmp.Kill'em
SET43C.tmp.Kill'em
SET43E.tmp.Kill'em
SET441.tmp.Kill'em
SET442.tmp.Kill'em
SET444.tmp.Kill'em
SET445.tmp.Kill'em
SET447.tmp.Kill'em
SET449.tmp.Kill'em
SET44A.tmp.Kill'em
SET44B.tmp.Kill'em
SET44C.tmp.Kill'em
SET44D.tmp.Kill'em
SET44E.tmp.Kill'em
SET44F.tmp.Kill'em
SET451.tmp.Kill'em
SET453.tmp.Kill'em
SET457.tmp.Kill'em
SET459.tmp.Kill'em
SET45B.tmp.Kill'em
SET463.tmp.Kill'em
SET465.tmp.Kill'em
SET467.tmp.Kill'em
SET468.tmp.Kill'em
SET469.tmp.Kill'em
SET46A.tmp.Kill'em
SET46B.tmp.Kill'em
SET46D.tmp.Kill'em
SET46F.tmp.Kill'em
SET470.tmp.Kill'em
SET471.tmp.Kill'em
SET472.tmp.Kill'em
SET474.tmp.Kill'em
SET475.tmp.Kill'em
SET477.tmp.Kill'em
SET47C.tmp.Kill'em
SET480.tmp.Kill'em
SET487.tmp.Kill'em
SET488.tmp.Kill'em
SET48A.tmp.Kill'em
SET48B.tmp.Kill'em
SET48C.tmp.Kill'em
SET48D.tmp.Kill'em
SET48F.tmp.Kill'em
SET493.tmp.Kill'em
SET497.tmp.Kill'em
SET498.tmp.Kill'em
SET49E.tmp.Kill'em
SET4A0.tmp.Kill'em
SET4A5.tmp.Kill'em
SET4A9.tmp.Kill'em
SET4AF.tmp.Kill'em
SET4B3.tmp.Kill'em
SET4B5.tmp.Kill'em
SET4BC.tmp.Kill'em
SET4BF.tmp.Kill'em
SET4C0.tmp.Kill'em
SET4C2.tmp.Kill'em
SET4C6.tmp.Kill'em
SET4CB.tmp.Kill'em
SET4D0.tmp.Kill'em
SET4DE.tmp.Kill'em
SET4E4.tmp.Kill'em
SET4E6.tmp.Kill'em
SET4E8.tmp.Kill'em
SET4EA.tmp.Kill'em
SET4EC.tmp.Kill'em
SET4EF.tmp.Kill'em
SET4F1.tmp.Kill'em
SET4F5.tmp.Kill'em
SET4F9.tmp.Kill'em
SET504.tmp.Kill'em
SET506.tmp.Kill'em
SET507.tmp.Kill'em
SET508.tmp.Kill'em
SET509.tmp.Kill'em
SET50A.tmp.Kill'em
SET50B.tmp.Kill'em
SET50C.tmp.Kill'em
SET516.tmp.Kill'em
SET519.tmp.Kill'em
SET51B.tmp.Kill'em
SET51E.tmp.Kill'em
SET521.tmp.Kill'em
SET524.tmp.Kill'em
SET528.tmp.Kill'em
SET534.tmp.Kill'em
SET535.tmp.Kill'em
SET53A.tmp.Kill'em
SET53B.tmp.Kill'em
SET53C.tmp.Kill'em
SET541.tmp.Kill'em
SET554.tmp.Kill'em
SET55C.tmp.Kill'em
SET55F.tmp.Kill'em
SET561.tmp.Kill'em
SET568.tmp.Kill'em
SET569.tmp.Kill'em
SET56A.tmp.Kill'em
SET56C.tmp.Kill'em
SET56D.tmp.Kill'em
SET56E.tmp.Kill'em
SET56F.tmp.Kill'em
SET571.tmp.Kill'em
SET572.tmp.Kill'em
SET573.tmp.Kill'em
SET574.tmp.Kill'em
SET576.tmp.Kill'em
SET579.tmp.Kill'em
SET57B.tmp.Kill'em
SET57E.tmp.Kill'em
SET57F.tmp.Kill'em
SET580.tmp.Kill'em
SET581.tmp.Kill'em
SET582.tmp.Kill'em
SET584.tmp.Kill'em
SET585.tmp.Kill'em
SET586.tmp.Kill'em
SET589.tmp.Kill'em
SET58A.tmp.Kill'em
SET58C.tmp.Kill'em
SET58D.tmp.Kill'em
SET58F.tmp.Kill'em
SET590.tmp.Kill'em
SET593.tmp.Kill'em
SET594.tmp.Kill'em
SET596.tmp.Kill'em
SET597.tmp.Kill'em
SET59A.tmp.Kill'em
SET59C.tmp.Kill'em
SET59E.tmp.Kill'em
SET59F.tmp.Kill'em
SET5A0.tmp.Kill'em
SET5A2.tmp.Kill'em
SET5A3.tmp.Kill'em
SET5A7.tmp.Kill'em
SET5A8.tmp.Kill'em
SET5AC.tmp.Kill'em
SET5AD.tmp.Kill'em
SET5AE.tmp.Kill'em
SET5B2.tmp.Kill'em
SET5B4.tmp.Kill'em
SET5B6.tmp.Kill'em
SET5B7.tmp.Kill'em
SET5BA.tmp.Kill'em
SET5BC.tmp.Kill'em
SET5BE.tmp.Kill'em
SET5BF.tmp.Kill'em
SET5C2.tmp.Kill'em
SET5C3.tmp.Kill'em
SET5C4.tmp.Kill'em
SET5C7.tmp.Kill'em
SET5C9.tmp.Kill'em
SET5CD.tmp.Kill'em
SET5CF.tmp.Kill'em
SET5D0.tmp.Kill'em
SET5D1.tmp.Kill'em
SET5D4.tmp.Kill'em
SET5D5.tmp.Kill'em
SET5D9.tmp.Kill'em
SET5DA.tmp.Kill'em
SET5DF.tmp.Kill'em
SET5E1.tmp.Kill'em
SET5E3.tmp.Kill'em
SET5E4.tmp.Kill'em
SET5E7.tmp.Kill'em
SET5E9.tmp.Kill'em
SET5EC.tmp.Kill'em
SET5EF.tmp.Kill'em
SET5F1.tmp.Kill'em
SET744.tmp.Kill'em
SET74A.tmp.Kill'em
SET770.tmp.Kill'em
SET776.tmp.Kill'em
_004462_.tmp.dll.Kill'em
_004471_.tmp.dll.Kill'em
_004487_.tmp.dll.Kill'em
_004488_.tmp.dll.Kill'em
_004489_.tmp.dll.Kill'em
_004490_.tmp.dll.Kill'em
_004496_.tmp.dll.Kill'em
_004497_.tmp.dll.Kill'em
_004498_.tmp.dll.Kill'em
_004499_.tmp.dll.Kill'em
_004500_.tmp.dll.Kill'em
_004501_.tmp.dll.Kill'em
_004502_.tmp.dll.Kill'em
_004503_.tmp.dll.Kill'em
_004504_.tmp.dll.Kill'em
_004505_.tmp.dll.Kill'em
_004506_.tmp.dll.Kill'em
_004507_.tmp.dll.Kill'em
_004510_.tmp.dll.Kill'em
_004511_.tmp.dll.Kill'em
_004513_.tmp.dll.Kill'em
_004516_.tmp.dll.Kill'em
_004517_.tmp.dll.Kill'em
_004519_.tmp.dll.Kill'em
_004520_.tmp.dll.Kill'em
_004521_.tmp.dll.Kill'em
_004522_.tmp.dll.Kill'em
_004524_.tmp.dll.Kill'em
_004525_.tmp.dll.Kill'em
_004526_.tmp.dll.Kill'em
_004527_.tmp.dll.Kill'em
_004529_.tmp.dll.Kill'em
_004530_.tmp.dll.Kill'em
_004531_.tmp.dll.Kill'em
_004532_.tmp.dll.Kill'em
_004533_.tmp.dll.Kill'em
_004535_.tmp.dll.Kill'em
_004536_.tmp.dll.Kill'em
_004537_.tmp.dll.Kill'em
_004538_.tmp.dll.Kill'em
_004539_.tmp.dll.Kill'em
_004540_.tmp.dll.Kill'em
_004541_.tmp.dll.Kill'em
_004544_.tmp.dll.Kill'em
_004545_.tmp.dll.Kill'em
_004546_.tmp.dll.Kill'em
_004548_.tmp.dll.Kill'em
_004551_.tmp.dll.Kill'em
_004552_.tmp.dll.Kill'em
_004557_.tmp.dll.Kill'em
_004559_.tmp.dll.Kill'em
_004562_.tmp.dll.Kill'em
_004564_.tmp.dll.Kill'em
_004565_.tmp.dll.Kill'em
_004566_.tmp.dll.Kill'em
_004567_.tmp.dll.Kill'em
_004570_.tmp.dll.Kill'em
_004571_.tmp.dll.Kill'em
_004572_.tmp.dll.Kill'em
_004573_.tmp.dll.Kill'em
_004574_.tmp.dll.Kill'em
_004579_.tmp.dll.Kill'em
==============
host file OK !
==============
========
Registry
========
Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Install.exe
Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
============
Disk Cleaned
============
================
Prefetch cleaned
================
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Kill'em by g3n-h@ckm@n 1.1.7.0
User : SYLVIE (Administrateurs) # SAMSUNG-F892200
Update on 30/12/2009 by g3n-h@ckm@n ::::: 23:45
Start at: 13:09:03 | 31/12/2009
Contact : g3n-h@ckm@n sur CCM
Genuine Intel(R) CPU T2250 @ 1.73GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 6.0.2900.5512
Windows Firewall Status : Disabled
AV : Bitdefender Antivirus 8.0 [ (!) Disabled | Updated ]
FW : Bitdefender Firewall[ (!) Disabled ]8.0
C:\ -> Disque fixe local | 86,05 Go (47,01 Go free) | NTFS
D:\ -> Disque CD-ROM
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running
C:\WINDOWS\System32\smss.exe 876
C:\WINDOWS\system32\csrss.exe 952
C:\WINDOWS\system32\winlogon.exe 980
C:\WINDOWS\system32\services.exe 1024
C:\WINDOWS\system32\lsass.exe 1036
C:\WINDOWS\system32\Ati2evxx.exe 1192
C:\WINDOWS\system32\svchost.exe 1220
C:\WINDOWS\system32\svchost.exe 1284
C:\WINDOWS\System32\svchost.exe 1324
C:\WINDOWS\system32\svchost.exe 1364
C:\WINDOWS\system32\svchost.exe 1420
C:\WINDOWS\system32\svchost.exe 1508
C:\WINDOWS\system32\brsvc01a.exe 1836
C:\WINDOWS\system32\spoolsv.exe 1880
C:\WINDOWS\system32\brss01a.exe 1884
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe 1928
C:\WINDOWS\system32\Ati2evxx.exe 244
C:\WINDOWS\Explorer.EXE 360
C:\Program Files\Java\jre6\bin\jusched.exe 820
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe 828
C:\WINDOWS\RTHDCPL.EXE 780
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe 860
C:\WINDOWS\AGRSMMSG.exe 868
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 900
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe 256
C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe 956
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe 1200
C:\Program Files\Samsung\DisplayManager\DisplayManager.exe 1344
C:\Program Files\Samsung\DisplayManager\dmhkcore.exe 1352
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe 1428
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe 1596
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe 2000
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe 2044
C:\Program Files\SAMSUNG\MagicKBD\MagicKBD.exe 132
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe 384
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe 520
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe 584
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe 628
C:\WINDOWS\system32\ctfmon.exe 640
C:\WINDOWS\system32\svchost.exe 768
C:\Program Files\Java\jre6\bin\jqs.exe 1588
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe 1660
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe 1780
C:\WINDOWS\system32\HPZipm12.exe 2124
C:\Program Files\CyberLink\Shared Files\RichVideo.exe 2192
C:\Documents and Settings\SYLVIE\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe 2240
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 2368
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe 2508
C:\WINDOWS\system32\svchost.exe 2552
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe 2580
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe 2612
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe 2644
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe 2700
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe 3132
C:\WINDOWS\System32\alg.exe 2116
C:\WINDOWS\System32\svchost.exe 2220
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe 3996
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe 4024
C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe 20096
C:\WINDOWS\system32\wbem\wmiprvse.exe 20128
C:\Program Files\BitDefender\BitDefender 2008\seccenter.exe 18904
C:\Program Files\List_Kill'em\List_Kill'em.exe 18932
C:\WINDOWS\system32\cmd.exe 2380
C:\Documents and Settings\SYLVIE\Local Settings\Temp\3AF.tmp\pv.exe 20312
Detections :
==========
¤¤¤¤¤¤¤¤¤¤ Files/folders :
C:\WINDOWS\System32\_004487_.tmp.dll
C:\WINDOWS\System32\_004488_.tmp.dll
C:\WINDOWS\System32\_004489_.tmp.dll
C:\WINDOWS\System32\_004490_.tmp.dll
C:\WINDOWS\System32\_004496_.tmp.dll
C:\WINDOWS\System32\_004497_.tmp.dll
C:\WINDOWS\System32\_004498_.tmp.dll
C:\WINDOWS\System32\_004499_.tmp.dll
C:\WINDOWS\System32\_004500_.tmp.dll
C:\WINDOWS\System32\_004501_.tmp.dll
C:\WINDOWS\System32\_004502_.tmp.dll
C:\WINDOWS\System32\_004503_.tmp.dll
C:\WINDOWS\System32\_004504_.tmp.dll
C:\WINDOWS\System32\_004505_.tmp.dll
C:\WINDOWS\System32\_004506_.tmp.dll
C:\WINDOWS\System32\_004507_.tmp.dll
C:\WINDOWS\System32\_004510_.tmp.dll
C:\WINDOWS\System32\_004511_.tmp.dll
C:\WINDOWS\System32\_004513_.tmp.dll
C:\WINDOWS\System32\_004516_.tmp.dll
C:\WINDOWS\System32\_004517_.tmp.dll
C:\WINDOWS\System32\_004519_.tmp.dll
C:\WINDOWS\System32\_004520_.tmp.dll
C:\WINDOWS\System32\_004521_.tmp.dll
C:\WINDOWS\System32\_004522_.tmp.dll
C:\WINDOWS\System32\_004524_.tmp.dll
C:\WINDOWS\System32\_004525_.tmp.dll
C:\WINDOWS\System32\_004526_.tmp.dll
C:\WINDOWS\System32\_004527_.tmp.dll
C:\WINDOWS\System32\_004529_.tmp.dll
C:\WINDOWS\System32\_004530_.tmp.dll
C:\WINDOWS\System32\_004531_.tmp.dll
C:\WINDOWS\System32\_004532_.tmp.dll
C:\WINDOWS\System32\_004533_.tmp.dll
C:\WINDOWS\System32\_004535_.tmp.dll
C:\WINDOWS\System32\_004536_.tmp.dll
C:\WINDOWS\System32\_004537_.tmp.dll
C:\WINDOWS\System32\_004538_.tmp.dll
C:\WINDOWS\System32\_004539_.tmp.dll
C:\WINDOWS\System32\_004540_.tmp.dll
C:\WINDOWS\System32\_004541_.tmp.dll
C:\WINDOWS\System32\_004544_.tmp.dll
C:\WINDOWS\System32\_004545_.tmp.dll
C:\WINDOWS\System32\_004546_.tmp.dll
C:\WINDOWS\System32\_004548_.tmp.dll
C:\WINDOWS\System32\_004551_.tmp.dll
C:\WINDOWS\System32\_004552_.tmp.dll
C:\WINDOWS\System32\_004557_.tmp.dll
C:\WINDOWS\System32\_004559_.tmp.dll
C:\WINDOWS\System32\_004562_.tmp.dll
C:\WINDOWS\System32\_004564_.tmp.dll
C:\WINDOWS\System32\_004565_.tmp.dll
C:\WINDOWS\System32\_004566_.tmp.dll
C:\WINDOWS\System32\_004567_.tmp.dll
C:\WINDOWS\System32\_004570_.tmp.dll
C:\WINDOWS\System32\_004571_.tmp.dll
C:\WINDOWS\System32\_004572_.tmp.dll
C:\WINDOWS\System32\_004573_.tmp.dll
C:\WINDOWS\System32\_004574_.tmp.dll
C:\WINDOWS\System32\_004579_.tmp.dll
C:\WINDOWS\System32\drivers\_004462_.tmp.dll
C:\WINDOWS\System32\drivers\_004471_.tmp.dll
"C:\WINDOWS\System32\drivers\etc\hosts.msn"
C:\WINDOWS\System32\SET12CD.tmp
C:\WINDOWS\System32\SET12D0.tmp
C:\WINDOWS\System32\SET12D5.tmp
C:\WINDOWS\System32\SET12DA.tmp
C:\WINDOWS\System32\SET12DE.tmp
C:\WINDOWS\System32\SET12E5.tmp
C:\WINDOWS\System32\SET12E8.tmp
C:\WINDOWS\System32\SET12F8.tmp
C:\WINDOWS\System32\SET12FB.tmp
C:\WINDOWS\System32\SET1300.tmp
C:\WINDOWS\System32\SET1305.tmp
C:\WINDOWS\System32\SET1306.tmp
C:\WINDOWS\System32\SET130A.tmp
C:\WINDOWS\System32\SET1311.tmp
C:\WINDOWS\System32\SET1314.tmp
C:\WINDOWS\System32\SET1315.tmp
C:\WINDOWS\System32\SET1331.tmp
C:\WINDOWS\System32\SET1336.tmp
C:\WINDOWS\System32\SET133D.tmp
C:\WINDOWS\System32\SET134B.tmp
C:\WINDOWS\System32\SET1365.tmp
C:\WINDOWS\System32\SET136C.tmp
C:\WINDOWS\System32\SET137A.tmp
C:\WINDOWS\System32\SET228.tmp
C:\WINDOWS\System32\SET229.tmp
C:\WINDOWS\System32\SET22A.tmp
C:\WINDOWS\System32\SET22C.tmp
C:\WINDOWS\System32\SET22E.tmp
C:\WINDOWS\System32\SET230.tmp
C:\WINDOWS\System32\SET237.tmp
C:\WINDOWS\System32\SET238.tmp
C:\WINDOWS\System32\SET23B.tmp
C:\WINDOWS\System32\SET240.tmp
C:\WINDOWS\System32\SET241.tmp
C:\WINDOWS\System32\SET242.tmp
C:\WINDOWS\System32\SET244.tmp
C:\WINDOWS\System32\SET245.tmp
C:\WINDOWS\System32\SET246.tmp
C:\WINDOWS\System32\SET247.tmp
C:\WINDOWS\System32\SET248.tmp
C:\WINDOWS\System32\SET24A.tmp
C:\WINDOWS\System32\SET24B.tmp
C:\WINDOWS\System32\SET24C.tmp
C:\WINDOWS\System32\SET24D.tmp
C:\WINDOWS\System32\SET250.tmp
C:\WINDOWS\System32\SET257.tmp
C:\WINDOWS\System32\SET258.tmp
C:\WINDOWS\System32\SET259.tmp
C:\WINDOWS\System32\SET25A.tmp
C:\WINDOWS\System32\SET25D.tmp
C:\WINDOWS\System32\SET25F.tmp
C:\WINDOWS\System32\SET260.tmp
C:\WINDOWS\System32\SET267.tmp
C:\WINDOWS\System32\SET26A.tmp
C:\WINDOWS\System32\SET26B.tmp
C:\WINDOWS\System32\SET26D.tmp
C:\WINDOWS\System32\SET26E.tmp
C:\WINDOWS\System32\SET26F.tmp
C:\WINDOWS\System32\SET274.tmp
C:\WINDOWS\System32\SET275.tmp
C:\WINDOWS\System32\SET276.tmp
C:\WINDOWS\System32\SET277.tmp
C:\WINDOWS\System32\SET278.tmp
C:\WINDOWS\System32\SET27E.tmp
C:\WINDOWS\System32\SET283.tmp
C:\WINDOWS\System32\SET284.tmp
C:\WINDOWS\System32\SET288.tmp
C:\WINDOWS\System32\SET28C.tmp
C:\WINDOWS\System32\SET293.tmp
C:\WINDOWS\System32\SET294.tmp
C:\WINDOWS\System32\SET296.tmp
C:\WINDOWS\System32\SET299.tmp
C:\WINDOWS\System32\SET29A.tmp
C:\WINDOWS\System32\SET2A3.tmp
C:\WINDOWS\System32\SET2A4.tmp
C:\WINDOWS\System32\SET2A7.tmp
C:\WINDOWS\System32\SET2A9.tmp
C:\WINDOWS\System32\SET2AA.tmp
C:\WINDOWS\System32\SET2AB.tmp
C:\WINDOWS\System32\SET2AC.tmp
C:\WINDOWS\System32\SET2AD.tmp
C:\WINDOWS\System32\SET2BD.tmp
C:\WINDOWS\System32\SET2C2.tmp
C:\WINDOWS\System32\SET2C4.tmp
C:\WINDOWS\System32\SET2C6.tmp
C:\WINDOWS\System32\SET2C7.tmp
C:\WINDOWS\System32\SET2C8.tmp
C:\WINDOWS\System32\SET2CB.tmp
C:\WINDOWS\System32\SET2CC.tmp
C:\WINDOWS\System32\SET2D0.tmp
C:\WINDOWS\System32\SET2D1.tmp
C:\WINDOWS\System32\SET2D4.tmp
C:\WINDOWS\System32\SET2D5.tmp
C:\WINDOWS\System32\SET2D6.tmp
C:\WINDOWS\System32\SET2DB.tmp
C:\WINDOWS\System32\SET2DC.tmp
C:\WINDOWS\System32\SET2DE.tmp
C:\WINDOWS\System32\SET2DF.tmp
C:\WINDOWS\System32\SET2E0.tmp
C:\WINDOWS\System32\SET2E1.tmp
C:\WINDOWS\System32\SET2E2.tmp
C:\WINDOWS\System32\SET2E3.tmp
C:\WINDOWS\System32\SET2E9.tmp
C:\WINDOWS\System32\SET2EA.tmp
C:\WINDOWS\System32\SET2EC.tmp
C:\WINDOWS\System32\SET2ED.tmp
C:\WINDOWS\System32\SET2EE.tmp
C:\WINDOWS\System32\SET2F2.tmp
C:\WINDOWS\System32\SET2F3.tmp
C:\WINDOWS\System32\SET2F4.tmp
C:\WINDOWS\System32\SET2F6.tmp
C:\WINDOWS\System32\SET2F7.tmp
C:\WINDOWS\System32\SET2F8.tmp
C:\WINDOWS\System32\SET2F9.tmp
C:\WINDOWS\System32\SET2FA.tmp
C:\WINDOWS\System32\SET2FC.tmp
C:\WINDOWS\System32\SET2FD.tmp
C:\WINDOWS\System32\SET2FE.tmp
C:\WINDOWS\System32\SET2FF.tmp
C:\WINDOWS\System32\SET300.tmp
C:\WINDOWS\System32\SET301.tmp
C:\WINDOWS\System32\SET302.tmp
C:\WINDOWS\System32\SET303.tmp
C:\WINDOWS\System32\SET304.tmp
C:\WINDOWS\System32\SET306.tmp
C:\WINDOWS\System32\SET309.tmp
C:\WINDOWS\System32\SET30A.tmp
C:\WINDOWS\System32\SET30B.tmp
C:\WINDOWS\System32\SET30C.tmp
C:\WINDOWS\System32\SET30F.tmp
C:\WINDOWS\System32\SET310.tmp
C:\WINDOWS\System32\SET311.tmp
C:\WINDOWS\System32\SET312.tmp
C:\WINDOWS\System32\SET313.tmp
C:\WINDOWS\System32\SET319.tmp
C:\WINDOWS\System32\SET31A.tmp
C:\WINDOWS\System32\SET31B.tmp
C:\WINDOWS\System32\SET31C.tmp
C:\WINDOWS\System32\SET31D.tmp
C:\WINDOWS\System32\SET31F.tmp
C:\WINDOWS\System32\SET320.tmp
C:\WINDOWS\System32\SET321.tmp
C:\WINDOWS\System32\SET326.tmp
C:\WINDOWS\System32\SET327.tmp
C:\WINDOWS\System32\SET328.tmp
C:\WINDOWS\System32\SET329.tmp
C:\WINDOWS\System32\SET32A.tmp
C:\WINDOWS\System32\SET32B.tmp
C:\WINDOWS\System32\SET330.tmp
C:\WINDOWS\System32\SET331.tmp
C:\WINDOWS\System32\SET332.tmp
C:\WINDOWS\System32\SET335.tmp
C:\WINDOWS\System32\SET336.tmp
C:\WINDOWS\System32\SET339.tmp
C:\WINDOWS\System32\SET33A.tmp
C:\WINDOWS\System32\SET33E.tmp
C:\WINDOWS\System32\SET340.tmp
C:\WINDOWS\System32\SET341.tmp
C:\WINDOWS\System32\SET343.tmp
C:\WINDOWS\System32\SET344.tmp
C:\WINDOWS\System32\SET345.tmp
C:\WINDOWS\System32\SET346.tmp
C:\WINDOWS\System32\SET348.tmp
C:\WINDOWS\System32\SET34A.tmp
C:\WINDOWS\System32\SET34B.tmp
C:\WINDOWS\System32\SET34C.tmp
C:\WINDOWS\System32\SET34E.tmp
C:\WINDOWS\System32\SET351.tmp
C:\WINDOWS\System32\SET352.tmp
C:\WINDOWS\System32\SET355.tmp
C:\WINDOWS\System32\SET356.tmp
C:\WINDOWS\System32\SET358.tmp
C:\WINDOWS\System32\SET359.tmp
C:\WINDOWS\System32\SET35B.tmp
C:\WINDOWS\System32\SET35C.tmp
C:\WINDOWS\System32\SET35D.tmp
C:\WINDOWS\System32\SET35E.tmp
C:\WINDOWS\System32\SET35F.tmp
C:\WINDOWS\System32\SET364.tmp
C:\WINDOWS\System32\SET365.tmp
C:\WINDOWS\System32\SET366.tmp
C:\WINDOWS\System32\SET369.tmp
C:\WINDOWS\System32\SET36A.tmp
C:\WINDOWS\System32\SET36B.tmp
C:\WINDOWS\System32\SET36C.tmp
C:\WINDOWS\System32\SET36D.tmp
C:\WINDOWS\System32\SET36F.tmp
C:\WINDOWS\System32\SET374.tmp
C:\WINDOWS\System32\SET376.tmp
C:\WINDOWS\System32\SET377.tmp
C:\WINDOWS\System32\SET378.tmp
C:\WINDOWS\System32\SET379.tmp
C:\WINDOWS\System32\SET37A.tmp
C:\WINDOWS\System32\SET37B.tmp
C:\WINDOWS\System32\SET37D.tmp
C:\WINDOWS\System32\SET37E.tmp
C:\WINDOWS\System32\SET380.tmp
C:\WINDOWS\System32\SET381.tmp
C:\WINDOWS\System32\SET382.tmp
C:\WINDOWS\System32\SET383.tmp
C:\WINDOWS\System32\SET384.tmp
C:\WINDOWS\System32\SET385.tmp
C:\WINDOWS\System32\SET386.tmp
C:\WINDOWS\System32\SET387.tmp
C:\WINDOWS\System32\SET388.tmp
C:\WINDOWS\System32\SET389.tmp
C:\WINDOWS\System32\SET38B.tmp
C:\WINDOWS\System32\SET38C.tmp
C:\WINDOWS\System32\SET38D.tmp
C:\WINDOWS\System32\SET38E.tmp
C:\WINDOWS\System32\SET38F.tmp
C:\WINDOWS\System32\SET390.tmp
C:\WINDOWS\System32\SET392.tmp
C:\WINDOWS\System32\SET393.tmp
C:\WINDOWS\System32\SET394.tmp
C:\WINDOWS\System32\SET397.tmp
C:\WINDOWS\System32\SET398.tmp
C:\WINDOWS\System32\SET39B.tmp
C:\WINDOWS\System32\SET39E.tmp
C:\WINDOWS\System32\SET39F.tmp
C:\WINDOWS\System32\SET3A0.tmp
C:\WINDOWS\System32\SET3A1.tmp
C:\WINDOWS\System32\SET3A3.tmp
C:\WINDOWS\System32\SET3A5.tmp
C:\WINDOWS\System32\SET3A6.tmp
C:\WINDOWS\System32\SET3A7.tmp
C:\WINDOWS\System32\SET3A8.tmp
C:\WINDOWS\System32\SET3A9.tmp
C:\WINDOWS\System32\SET3AE.tmp
C:\WINDOWS\System32\SET3AF.tmp
C:\WINDOWS\System32\SET3B0.tmp
C:\WINDOWS\System32\SET3B1.tmp
C:\WINDOWS\System32\SET3B3.tmp
C:\WINDOWS\System32\SET3B5.tmp
C:\WINDOWS\System32\SET3B7.tmp
C:\WINDOWS\System32\SET3B9.tmp
C:\WINDOWS\System32\SET3BA.tmp
C:\WINDOWS\System32\SET3BB.tmp
C:\WINDOWS\System32\SET3BC.tmp
C:\WINDOWS\System32\SET3C0.tmp
C:\WINDOWS\System32\SET3C6.tmp
C:\WINDOWS\System32\SET3C7.tmp
C:\WINDOWS\System32\SET3C8.tmp
C:\WINDOWS\System32\SET3C9.tmp
C:\WINDOWS\System32\SET3CA.tmp
C:\WINDOWS\System32\SET3CC.tmp
C:\WINDOWS\System32\SET3CE.tmp
C:\WINDOWS\System32\SET3D2.tmp
C:\WINDOWS\System32\SET3D4.tmp
C:\WINDOWS\System32\SET3D6.tmp
C:\WINDOWS\System32\SET3D9.tmp
C:\WINDOWS\System32\SET3DF.tmp
C:\WINDOWS\System32\SET3E0.tmp
C:\WINDOWS\System32\SET3E1.tmp
C:\WINDOWS\System32\SET3E3.tmp
C:\WINDOWS\System32\SET3E4.tmp
C:\WINDOWS\System32\SET3E5.tmp
C:\WINDOWS\System32\SET3E7.tmp
C:\WINDOWS\System32\SET3E8.tmp
C:\WINDOWS\System32\SET3EC.tmp
C:\WINDOWS\System32\SET3ED.tmp
C:\WINDOWS\System32\SET3F0.tmp
C:\WINDOWS\System32\SET3F1.tmp
C:\WINDOWS\System32\SET3F2.tmp
C:\WINDOWS\System32\SET3F3.tmp
C:\WINDOWS\System32\SET3F4.tmp
C:\WINDOWS\System32\SET3F6.tmp
C:\WINDOWS\System32\SET3F7.tmp
C:\WINDOWS\System32\SET3F8.tmp
C:\WINDOWS\System32\SET3FA.tmp
C:\WINDOWS\System32\SET3FB.tmp
C:\WINDOWS\System32\SET3FC.tmp
C:\WINDOWS\System32\SET3FD.tmp
C:\WINDOWS\System32\SET3FE.tmp
C:\WINDOWS\System32\SET3FF.tmp
C:\WINDOWS\System32\SET401.tmp
C:\WINDOWS\System32\SET402.tmp
C:\WINDOWS\System32\SET403.tmp
C:\WINDOWS\System32\SET407.tmp
C:\WINDOWS\System32\SET408.tmp
C:\WINDOWS\System32\SET409.tmp
C:\WINDOWS\System32\SET40B.tmp
C:\WINDOWS\System32\SET40D.tmp
C:\WINDOWS\System32\SET40E.tmp
C:\WINDOWS\System32\SET40F.tmp
C:\WINDOWS\System32\SET410.tmp
C:\WINDOWS\System32\SET411.tmp
C:\WINDOWS\System32\SET412.tmp
C:\WINDOWS\System32\SET413.tmp
C:\WINDOWS\System32\SET414.tmp
C:\WINDOWS\System32\SET415.tmp
C:\WINDOWS\System32\SET417.tmp
C:\WINDOWS\System32\SET418.tmp
C:\WINDOWS\System32\SET419.tmp
C:\WINDOWS\System32\SET41B.tmp
C:\WINDOWS\System32\SET41C.tmp
C:\WINDOWS\System32\SET420.tmp
C:\WINDOWS\System32\SET422.tmp
C:\WINDOWS\System32\SET423.tmp
C:\WINDOWS\System32\SET426.tmp
C:\WINDOWS\System32\SET42A.tmp
C:\WINDOWS\System32\SET42E.tmp
C:\WINDOWS\System32\SET430.tmp
C:\WINDOWS\System32\SET432.tmp
C:\WINDOWS\System32\SET434.tmp
C:\WINDOWS\System32\SET435.tmp
C:\WINDOWS\System32\SET436.tmp
C:\WINDOWS\System32\SET437.tmp
C:\WINDOWS\System32\SET438.tmp
C:\WINDOWS\System32\SET439.tmp
C:\WINDOWS\System32\SET43A.tmp
C:\WINDOWS\System32\SET43C.tmp
C:\WINDOWS\System32\SET43E.tmp
C:\WINDOWS\System32\SET441.tmp
C:\WINDOWS\System32\SET442.tmp
C:\WINDOWS\System32\SET444.tmp
C:\WINDOWS\System32\SET445.tmp
C:\WINDOWS\System32\SET447.tmp
C:\WINDOWS\System32\SET449.tmp
C:\WINDOWS\System32\SET44A.tmp
C:\WINDOWS\System32\SET44B.tmp
C:\WINDOWS\System32\SET44C.tmp
C:\WINDOWS\System32\SET44D.tmp
C:\WINDOWS\System32\SET44E.tmp
C:\WINDOWS\System32\SET44F.tmp
C:\WINDOWS\System32\SET451.tmp
C:\WINDOWS\System32\SET453.tmp
C:\WINDOWS\System32\SET457.tmp
C:\WINDOWS\System32\SET459.tmp
C:\WINDOWS\System32\SET45B.tmp
C:\WINDOWS\System32\SET463.tmp
C:\WINDOWS\System32\SET465.tmp
C:\WINDOWS\System32\SET467.tmp
C:\WINDOWS\System32\SET468.tmp
C:\WINDOWS\System32\SET469.tmp
C:\WINDOWS\System32\SET46A.tmp
C:\WINDOWS\System32\SET46B.tmp
C:\WINDOWS\System32\SET46D.tmp
C:\WINDOWS\System32\SET46F.tmp
C:\WINDOWS\System32\SET470.tmp
C:\WINDOWS\System32\SET471.tmp
C:\WINDOWS\System32\SET472.tmp
C:\WINDOWS\System32\SET474.tmp
C:\WINDOWS\System32\SET475.tmp
C:\WINDOWS\System32\SET477.tmp
C:\WINDOWS\System32\SET47C.tmp
C:\WINDOWS\System32\SET480.tmp
C:\WINDOWS\System32\SET487.tmp
C:\WINDOWS\System32\SET488.tmp
C:\WINDOWS\System32\SET48A.tmp
C:\WINDOWS\System32\SET48B.tmp
C:\WINDOWS\System32\SET48C.tmp
C:\WINDOWS\System32\SET48D.tmp
C:\WINDOWS\System32\SET48F.tmp
C:\WINDOWS\System32\SET493.tmp
C:\WINDOWS\System32\SET497.tmp
C:\WINDOWS\System32\SET498.tmp
C:\WINDOWS\System32\SET49E.tmp
C:\WINDOWS\System32\SET4A0.tmp
C:\WINDOWS\System32\SET4A5.tmp
C:\WINDOWS\System32\SET4A9.tmp
C:\WINDOWS\System32\SET4AF.tmp
C:\WINDOWS\System32\SET4B3.tmp
C:\WINDOWS\System32\SET4B5.tmp
C:\WINDOWS\System32\SET4BC.tmp
C:\WINDOWS\System32\SET4BF.tmp
C:\WINDOWS\System32\SET4C0.tmp
C:\WINDOWS\System32\SET4C2.tmp
C:\WINDOWS\System32\SET4C6.tmp
C:\WINDOWS\System32\SET4CB.tmp
C:\WINDOWS\System32\SET4D0.tmp
C:\WINDOWS\System32\SET4DE.tmp
C:\WINDOWS\System32\SET4E4.tmp
C:\WINDOWS\System32\SET4E6.tmp
C:\WINDOWS\System32\SET4E8.tmp
C:\WINDOWS\System32\SET4EA.tmp
C:\WINDOWS\System32\SET4EC.tmp
C:\WINDOWS\System32\SET4EF.tmp
C:\WINDOWS\System32\SET4F1.tmp
C:\WINDOWS\System32\SET4F5.tmp
C:\WINDOWS\System32\SET4F9.tmp
C:\WINDOWS\System32\SET504.tmp
C:\WINDOWS\System32\SET506.tmp
C:\WINDOWS\System32\SET507.tmp
C:\WINDOWS\System32\SET508.tmp
C:\WINDOWS\System32\SET509.tmp
C:\WINDOWS\System32\SET50A.tmp
C:\WINDOWS\System32\SET50B.tmp
C:\WINDOWS\System32\SET50C.tmp
C:\WINDOWS\System32\SET516.tmp
C:\WINDOWS\System32\SET519.tmp
C:\WINDOWS\System32\SET51B.tmp
C:\WINDOWS\System32\SET51E.tmp
C:\WINDOWS\System32\SET521.tmp
C:\WINDOWS\System32\SET524.tmp
C:\WINDOWS\System32\SET528.tmp
C:\WINDOWS\System32\SET534.tmp
C:\WINDOWS\System32\SET535.tmp
C:\WINDOWS\System32\SET53A.tmp
C:\WINDOWS\System32\SET53B.tmp
C:\WINDOWS\System32\SET53C.tmp
C:\WINDOWS\System32\SET541.tmp
C:\WINDOWS\System32\SET554.tmp
C:\WINDOWS\System32\SET55C.tmp
C:\WINDOWS\System32\SET55F.tmp
C:\WINDOWS\System32\SET561.tmp
C:\WINDOWS\System32\SET568.tmp
C:\WINDOWS\System32\SET569.tmp
C:\WINDOWS\System32\SET56A.tmp
C:\WINDOWS\System32\SET56C.tmp
C:\WINDOWS\System32\SET56D.tmp
C:\WINDOWS\System32\SET56E.tmp
C:\WINDOWS\System32\SET56F.tmp
C:\WINDOWS\System32\SET571.tmp
C:\WINDOWS\System32\SET572.tmp
C:\WINDOWS\System32\SET573.tmp
C:\WINDOWS\System32\SET574.tmp
C:\WINDOWS\System32\SET576.tmp
C:\WINDOWS\System32\SET579.tmp
C:\WINDOWS\System32\SET57B.tmp
C:\WINDOWS\System32\SET57E.tmp
C:\WINDOWS\System32\SET57F.tmp
C:\WINDOWS\System32\SET580.tmp
C:\WINDOWS\System32\SET581.tmp
C:\WINDOWS\System32\SET582.tmp
C:\WINDOWS\System32\SET584.tmp
C:\WINDOWS\System32\SET585.tmp
C:\WINDOWS\System32\SET586.tmp
C:\WINDOWS\System32\SET589.tmp
C:\WINDOWS\System32\SET58A.tmp
C:\WINDOWS\System32\SET58C.tmp
C:\WINDOWS\System32\SET58D.tmp
C:\WINDOWS\System32\SET58F.tmp
C:\WINDOWS\System32\SET590.tmp
C:\WINDOWS\System32\SET593.tmp
C:\WINDOWS\System32\SET594.tmp
C:\WINDOWS\System32\SET596.tmp
C:\WINDOWS\System32\SET597.tmp
C:\WINDOWS\System32\SET59A.tmp
C:\WINDOWS\System32\SET59C.tmp
C:\WINDOWS\System32\SET59E.tmp
C:\WINDOWS\System32\SET59F.tmp
C:\WINDOWS\System32\SET5A0.tmp
C:\WINDOWS\System32\SET5A2.tmp
C:\WINDOWS\System32\SET5A3.tmp
C:\WINDOWS\System32\SET5A7.tmp
C:\WINDOWS\System32\SET5A8.tmp
C:\WINDOWS\System32\SET5AC.tmp
C:\WINDOWS\System32\SET5AD.tmp
C:\WINDOWS\System32\SET5AE.tmp
C:\WINDOWS\System32\SET5B2.tmp
C:\WINDOWS\System32\SET5B4.tmp
C:\WINDOWS\System32\SET5B6.tmp
C:\WINDOWS\System32\SET5B7.tmp
C:\WINDOWS\System32\SET5BA.tmp
C:\WINDOWS\System32\SET5BC.tmp
C:\WINDOWS\System32\SET5BE.tmp
C:\WINDOWS\System32\SET5BF.tmp
C:\WINDOWS\System32\SET5C2.tmp
C:\WINDOWS\System32\SET5C3.tmp
C:\WINDOWS\System32\SET5C4.tmp
C:\WINDOWS\System32\SET5C7.tmp
C:\WINDOWS\System32\SET5C9.tmp
C:\WINDOWS\System32\SET5CD.tmp
C:\WINDOWS\System32\SET5CF.tmp
C:\WINDOWS\System32\SET5D0.tmp
C:\WINDOWS\System32\SET5D1.tmp
C:\WINDOWS\System32\SET5D4.tmp
C:\WINDOWS\System32\SET5D5.tmp
C:\WINDOWS\System32\SET5D9.tmp
C:\WINDOWS\System32\SET5DA.tmp
C:\WINDOWS\System32\SET5DF.tmp
C:\WINDOWS\System32\SET5E1.tmp
C:\WINDOWS\System32\SET5E3.tmp
C:\WINDOWS\System32\SET5E4.tmp
C:\WINDOWS\System32\SET5E7.tmp
C:\WINDOWS\System32\SET5E9.tmp
C:\WINDOWS\System32\SET5EC.tmp
C:\WINDOWS\System32\SET5EF.tmp
C:\WINDOWS\System32\SET5F1.tmp
C:\WINDOWS\System32\SET744.tmp
C:\WINDOWS\System32\SET74A.tmp
C:\WINDOWS\System32\SET770.tmp
C:\WINDOWS\System32\SET776.tmp
¤¤¤¤¤¤¤¤¤¤ Files/folders deleted :
Quarantine :
hosts.msn.Kill'em
SET12CD.tmp.Kill'em
SET12D0.tmp.Kill'em
SET12D5.tmp.Kill'em
SET12DA.tmp.Kill'em
SET12DE.tmp.Kill'em
SET12E5.tmp.Kill'em
SET12E8.tmp.Kill'em
SET12F8.tmp.Kill'em
SET12FB.tmp.Kill'em
SET1300.tmp.Kill'em
SET1305.tmp.Kill'em
SET1306.tmp.Kill'em
SET130A.tmp.Kill'em
SET1311.tmp.Kill'em
SET1314.tmp.Kill'em
SET1315.tmp.Kill'em
SET1331.tmp.Kill'em
SET1336.tmp.Kill'em
SET133D.tmp.Kill'em
SET134B.tmp.Kill'em
SET1365.tmp.Kill'em
SET136C.tmp.Kill'em
SET137A.tmp.Kill'em
SET228.tmp.Kill'em
SET229.tmp.Kill'em
SET22A.tmp.Kill'em
SET22C.tmp.Kill'em
SET22E.tmp.Kill'em
SET230.tmp.Kill'em
SET237.tmp.Kill'em
SET238.tmp.Kill'em
SET23B.tmp.Kill'em
SET240.tmp.Kill'em
SET241.tmp.Kill'em
SET242.tmp.Kill'em
SET244.tmp.Kill'em
SET245.tmp.Kill'em
SET246.tmp.Kill'em
SET247.tmp.Kill'em
SET248.tmp.Kill'em
SET24A.tmp.Kill'em
SET24B.tmp.Kill'em
SET24C.tmp.Kill'em
SET24D.tmp.Kill'em
SET250.tmp.Kill'em
SET257.tmp.Kill'em
SET258.tmp.Kill'em
SET259.tmp.Kill'em
SET25A.tmp.Kill'em
SET25D.tmp.Kill'em
SET25F.tmp.Kill'em
SET260.tmp.Kill'em
SET267.tmp.Kill'em
SET26A.tmp.Kill'em
SET26B.tmp.Kill'em
SET26D.tmp.Kill'em
SET26E.tmp.Kill'em
SET26F.tmp.Kill'em
SET274.tmp.Kill'em
SET275.tmp.Kill'em
SET276.tmp.Kill'em
SET277.tmp.Kill'em
SET278.tmp.Kill'em
SET27E.tmp.Kill'em
SET283.tmp.Kill'em
SET284.tmp.Kill'em
SET288.tmp.Kill'em
SET28C.tmp.Kill'em
SET293.tmp.Kill'em
SET294.tmp.Kill'em
SET296.tmp.Kill'em
SET299.tmp.Kill'em
SET29A.tmp.Kill'em
SET2A3.tmp.Kill'em
SET2A4.tmp.Kill'em
SET2A7.tmp.Kill'em
SET2A9.tmp.Kill'em
SET2AA.tmp.Kill'em
SET2AB.tmp.Kill'em
SET2AC.tmp.Kill'em
SET2AD.tmp.Kill'em
SET2BD.tmp.Kill'em
SET2C2.tmp.Kill'em
SET2C4.tmp.Kill'em
SET2C6.tmp.Kill'em
SET2C7.tmp.Kill'em
SET2C8.tmp.Kill'em
SET2CB.tmp.Kill'em
SET2CC.tmp.Kill'em
SET2D0.tmp.Kill'em
SET2D1.tmp.Kill'em
SET2D4.tmp.Kill'em
SET2D5.tmp.Kill'em
SET2D6.tmp.Kill'em
SET2DB.tmp.Kill'em
SET2DC.tmp.Kill'em
SET2DE.tmp.Kill'em
SET2DF.tmp.Kill'em
SET2E0.tmp.Kill'em
SET2E1.tmp.Kill'em
SET2E2.tmp.Kill'em
SET2E3.tmp.Kill'em
SET2E9.tmp.Kill'em
SET2EA.tmp.Kill'em
SET2EC.tmp.Kill'em
SET2ED.tmp.Kill'em
SET2EE.tmp.Kill'em
SET2F2.tmp.Kill'em
SET2F3.tmp.Kill'em
SET2F4.tmp.Kill'em
SET2F6.tmp.Kill'em
SET2F7.tmp.Kill'em
SET2F8.tmp.Kill'em
SET2F9.tmp.Kill'em
SET2FA.tmp.Kill'em
SET2FC.tmp.Kill'em
SET2FD.tmp.Kill'em
SET2FE.tmp.Kill'em
SET2FF.tmp.Kill'em
SET300.tmp.Kill'em
SET301.tmp.Kill'em
SET302.tmp.Kill'em
SET303.tmp.Kill'em
SET304.tmp.Kill'em
SET306.tmp.Kill'em
SET309.tmp.Kill'em
SET30A.tmp.Kill'em
SET30B.tmp.Kill'em
SET30C.tmp.Kill'em
SET30F.tmp.Kill'em
SET310.tmp.Kill'em
SET311.tmp.Kill'em
SET312.tmp.Kill'em
SET313.tmp.Kill'em
SET319.tmp.Kill'em
SET31A.tmp.Kill'em
SET31B.tmp.Kill'em
SET31C.tmp.Kill'em
SET31D.tmp.Kill'em
SET31F.tmp.Kill'em
SET320.tmp.Kill'em
SET321.tmp.Kill'em
SET326.tmp.Kill'em
SET327.tmp.Kill'em
SET328.tmp.Kill'em
SET329.tmp.Kill'em
SET32A.tmp.Kill'em
SET32B.tmp.Kill'em
SET330.tmp.Kill'em
SET331.tmp.Kill'em
SET332.tmp.Kill'em
SET335.tmp.Kill'em
SET336.tmp.Kill'em
SET339.tmp.Kill'em
SET33A.tmp.Kill'em
SET33E.tmp.Kill'em
SET340.tmp.Kill'em
SET341.tmp.Kill'em
SET343.tmp.Kill'em
SET344.tmp.Kill'em
SET345.tmp.Kill'em
SET346.tmp.Kill'em
SET348.tmp.Kill'em
SET34A.tmp.Kill'em
SET34B.tmp.Kill'em
SET34C.tmp.Kill'em
SET34E.tmp.Kill'em
SET351.tmp.Kill'em
SET352.tmp.Kill'em
SET355.tmp.Kill'em
SET356.tmp.Kill'em
SET358.tmp.Kill'em
SET359.tmp.Kill'em
SET35B.tmp.Kill'em
SET35C.tmp.Kill'em
SET35D.tmp.Kill'em
SET35E.tmp.Kill'em
SET35F.tmp.Kill'em
SET364.tmp.Kill'em
SET365.tmp.Kill'em
SET366.tmp.Kill'em
SET369.tmp.Kill'em
SET36A.tmp.Kill'em
SET36B.tmp.Kill'em
SET36C.tmp.Kill'em
SET36D.tmp.Kill'em
SET36F.tmp.Kill'em
SET374.tmp.Kill'em
SET376.tmp.Kill'em
SET377.tmp.Kill'em
SET378.tmp.Kill'em
SET379.tmp.Kill'em
SET37A.tmp.Kill'em
SET37B.tmp.Kill'em
SET37D.tmp.Kill'em
SET37E.tmp.Kill'em
SET380.tmp.Kill'em
SET381.tmp.Kill'em
SET382.tmp.Kill'em
SET383.tmp.Kill'em
SET384.tmp.Kill'em
SET385.tmp.Kill'em
SET386.tmp.Kill'em
SET387.tmp.Kill'em
SET388.tmp.Kill'em
SET389.tmp.Kill'em
SET38B.tmp.Kill'em
SET38C.tmp.Kill'em
SET38D.tmp.Kill'em
SET38E.tmp.Kill'em
SET38F.tmp.Kill'em
SET390.tmp.Kill'em
SET392.tmp.Kill'em
SET393.tmp.Kill'em
SET394.tmp.Kill'em
SET397.tmp.Kill'em
SET398.tmp.Kill'em
SET39B.tmp.Kill'em
SET39E.tmp.Kill'em
SET39F.tmp.Kill'em
SET3A0.tmp.Kill'em
SET3A1.tmp.Kill'em
SET3A3.tmp.Kill'em
SET3A5.tmp.Kill'em
SET3A6.tmp.Kill'em
SET3A7.tmp.Kill'em
SET3A8.tmp.Kill'em
SET3A9.tmp.Kill'em
SET3AE.tmp.Kill'em
SET3AF.tmp.Kill'em
SET3B0.tmp.Kill'em
SET3B1.tmp.Kill'em
SET3B3.tmp.Kill'em
SET3B5.tmp.Kill'em
SET3B7.tmp.Kill'em
SET3B9.tmp.Kill'em
SET3BA.tmp.Kill'em
SET3BB.tmp.Kill'em
SET3BC.tmp.Kill'em
SET3C0.tmp.Kill'em
SET3C6.tmp.Kill'em
SET3C7.tmp.Kill'em
SET3C8.tmp.Kill'em
SET3C9.tmp.Kill'em
SET3CA.tmp.Kill'em
SET3CC.tmp.Kill'em
SET3CE.tmp.Kill'em
SET3D2.tmp.Kill'em
SET3D4.tmp.Kill'em
SET3D6.tmp.Kill'em
SET3D9.tmp.Kill'em
SET3DF.tmp.Kill'em
SET3E0.tmp.Kill'em
SET3E1.tmp.Kill'em
SET3E3.tmp.Kill'em
SET3E4.tmp.Kill'em
SET3E5.tmp.Kill'em
SET3E7.tmp.Kill'em
SET3E8.tmp.Kill'em
SET3EC.tmp.Kill'em
SET3ED.tmp.Kill'em
SET3F0.tmp.Kill'em
SET3F1.tmp.Kill'em
SET3F2.tmp.Kill'em
SET3F3.tmp.Kill'em
SET3F4.tmp.Kill'em
SET3F6.tmp.Kill'em
SET3F7.tmp.Kill'em
SET3F8.tmp.Kill'em
SET3FA.tmp.Kill'em
SET3FB.tmp.Kill'em
SET3FC.tmp.Kill'em
SET3FD.tmp.Kill'em
SET3FE.tmp.Kill'em
SET3FF.tmp.Kill'em
SET401.tmp.Kill'em
SET402.tmp.Kill'em
SET403.tmp.Kill'em
SET407.tmp.Kill'em
SET408.tmp.Kill'em
SET409.tmp.Kill'em
SET40B.tmp.Kill'em
SET40D.tmp.Kill'em
SET40E.tmp.Kill'em
SET40F.tmp.Kill'em
SET410.tmp.Kill'em
SET411.tmp.Kill'em
SET412.tmp.Kill'em
SET413.tmp.Kill'em
SET414.tmp.Kill'em
SET415.tmp.Kill'em
SET417.tmp.Kill'em
SET418.tmp.Kill'em
SET419.tmp.Kill'em
SET41B.tmp.Kill'em
SET41C.tmp.Kill'em
SET420.tmp.Kill'em
SET422.tmp.Kill'em
SET423.tmp.Kill'em
SET426.tmp.Kill'em
SET42A.tmp.Kill'em
SET42E.tmp.Kill'em
SET430.tmp.Kill'em
SET432.tmp.Kill'em
SET434.tmp.Kill'em
SET435.tmp.Kill'em
SET436.tmp.Kill'em
SET437.tmp.Kill'em
SET438.tmp.Kill'em
SET439.tmp.Kill'em
SET43A.tmp.Kill'em
SET43C.tmp.Kill'em
SET43E.tmp.Kill'em
SET441.tmp.Kill'em
SET442.tmp.Kill'em
SET444.tmp.Kill'em
SET445.tmp.Kill'em
SET447.tmp.Kill'em
SET449.tmp.Kill'em
SET44A.tmp.Kill'em
SET44B.tmp.Kill'em
SET44C.tmp.Kill'em
SET44D.tmp.Kill'em
SET44E.tmp.Kill'em
SET44F.tmp.Kill'em
SET451.tmp.Kill'em
SET453.tmp.Kill'em
SET457.tmp.Kill'em
SET459.tmp.Kill'em
SET45B.tmp.Kill'em
SET463.tmp.Kill'em
SET465.tmp.Kill'em
SET467.tmp.Kill'em
SET468.tmp.Kill'em
SET469.tmp.Kill'em
SET46A.tmp.Kill'em
SET46B.tmp.Kill'em
SET46D.tmp.Kill'em
SET46F.tmp.Kill'em
SET470.tmp.Kill'em
SET471.tmp.Kill'em
SET472.tmp.Kill'em
SET474.tmp.Kill'em
SET475.tmp.Kill'em
SET477.tmp.Kill'em
SET47C.tmp.Kill'em
SET480.tmp.Kill'em
SET487.tmp.Kill'em
SET488.tmp.Kill'em
SET48A.tmp.Kill'em
SET48B.tmp.Kill'em
SET48C.tmp.Kill'em
SET48D.tmp.Kill'em
SET48F.tmp.Kill'em
SET493.tmp.Kill'em
SET497.tmp.Kill'em
SET498.tmp.Kill'em
SET49E.tmp.Kill'em
SET4A0.tmp.Kill'em
SET4A5.tmp.Kill'em
SET4A9.tmp.Kill'em
SET4AF.tmp.Kill'em
SET4B3.tmp.Kill'em
SET4B5.tmp.Kill'em
SET4BC.tmp.Kill'em
SET4BF.tmp.Kill'em
SET4C0.tmp.Kill'em
SET4C2.tmp.Kill'em
SET4C6.tmp.Kill'em
SET4CB.tmp.Kill'em
SET4D0.tmp.Kill'em
SET4DE.tmp.Kill'em
SET4E4.tmp.Kill'em
SET4E6.tmp.Kill'em
SET4E8.tmp.Kill'em
SET4EA.tmp.Kill'em
SET4EC.tmp.Kill'em
SET4EF.tmp.Kill'em
SET4F1.tmp.Kill'em
SET4F5.tmp.Kill'em
SET4F9.tmp.Kill'em
SET504.tmp.Kill'em
SET506.tmp.Kill'em
SET507.tmp.Kill'em
SET508.tmp.Kill'em
SET509.tmp.Kill'em
SET50A.tmp.Kill'em
SET50B.tmp.Kill'em
SET50C.tmp.Kill'em
SET516.tmp.Kill'em
SET519.tmp.Kill'em
SET51B.tmp.Kill'em
SET51E.tmp.Kill'em
SET521.tmp.Kill'em
SET524.tmp.Kill'em
SET528.tmp.Kill'em
SET534.tmp.Kill'em
SET535.tmp.Kill'em
SET53A.tmp.Kill'em
SET53B.tmp.Kill'em
SET53C.tmp.Kill'em
SET541.tmp.Kill'em
SET554.tmp.Kill'em
SET55C.tmp.Kill'em
SET55F.tmp.Kill'em
SET561.tmp.Kill'em
SET568.tmp.Kill'em
SET569.tmp.Kill'em
SET56A.tmp.Kill'em
SET56C.tmp.Kill'em
SET56D.tmp.Kill'em
SET56E.tmp.Kill'em
SET56F.tmp.Kill'em
SET571.tmp.Kill'em
SET572.tmp.Kill'em
SET573.tmp.Kill'em
SET574.tmp.Kill'em
SET576.tmp.Kill'em
SET579.tmp.Kill'em
SET57B.tmp.Kill'em
SET57E.tmp.Kill'em
SET57F.tmp.Kill'em
SET580.tmp.Kill'em
SET581.tmp.Kill'em
SET582.tmp.Kill'em
SET584.tmp.Kill'em
SET585.tmp.Kill'em
SET586.tmp.Kill'em
SET589.tmp.Kill'em
SET58A.tmp.Kill'em
SET58C.tmp.Kill'em
SET58D.tmp.Kill'em
SET58F.tmp.Kill'em
SET590.tmp.Kill'em
SET593.tmp.Kill'em
SET594.tmp.Kill'em
SET596.tmp.Kill'em
SET597.tmp.Kill'em
SET59A.tmp.Kill'em
SET59C.tmp.Kill'em
SET59E.tmp.Kill'em
SET59F.tmp.Kill'em
SET5A0.tmp.Kill'em
SET5A2.tmp.Kill'em
SET5A3.tmp.Kill'em
SET5A7.tmp.Kill'em
SET5A8.tmp.Kill'em
SET5AC.tmp.Kill'em
SET5AD.tmp.Kill'em
SET5AE.tmp.Kill'em
SET5B2.tmp.Kill'em
SET5B4.tmp.Kill'em
SET5B6.tmp.Kill'em
SET5B7.tmp.Kill'em
SET5BA.tmp.Kill'em
SET5BC.tmp.Kill'em
SET5BE.tmp.Kill'em
SET5BF.tmp.Kill'em
SET5C2.tmp.Kill'em
SET5C3.tmp.Kill'em
SET5C4.tmp.Kill'em
SET5C7.tmp.Kill'em
SET5C9.tmp.Kill'em
SET5CD.tmp.Kill'em
SET5CF.tmp.Kill'em
SET5D0.tmp.Kill'em
SET5D1.tmp.Kill'em
SET5D4.tmp.Kill'em
SET5D5.tmp.Kill'em
SET5D9.tmp.Kill'em
SET5DA.tmp.Kill'em
SET5DF.tmp.Kill'em
SET5E1.tmp.Kill'em
SET5E3.tmp.Kill'em
SET5E4.tmp.Kill'em
SET5E7.tmp.Kill'em
SET5E9.tmp.Kill'em
SET5EC.tmp.Kill'em
SET5EF.tmp.Kill'em
SET5F1.tmp.Kill'em
SET744.tmp.Kill'em
SET74A.tmp.Kill'em
SET770.tmp.Kill'em
SET776.tmp.Kill'em
_004462_.tmp.dll.Kill'em
_004471_.tmp.dll.Kill'em
_004487_.tmp.dll.Kill'em
_004488_.tmp.dll.Kill'em
_004489_.tmp.dll.Kill'em
_004490_.tmp.dll.Kill'em
_004496_.tmp.dll.Kill'em
_004497_.tmp.dll.Kill'em
_004498_.tmp.dll.Kill'em
_004499_.tmp.dll.Kill'em
_004500_.tmp.dll.Kill'em
_004501_.tmp.dll.Kill'em
_004502_.tmp.dll.Kill'em
_004503_.tmp.dll.Kill'em
_004504_.tmp.dll.Kill'em
_004505_.tmp.dll.Kill'em
_004506_.tmp.dll.Kill'em
_004507_.tmp.dll.Kill'em
_004510_.tmp.dll.Kill'em
_004511_.tmp.dll.Kill'em
_004513_.tmp.dll.Kill'em
_004516_.tmp.dll.Kill'em
_004517_.tmp.dll.Kill'em
_004519_.tmp.dll.Kill'em
_004520_.tmp.dll.Kill'em
_004521_.tmp.dll.Kill'em
_004522_.tmp.dll.Kill'em
_004524_.tmp.dll.Kill'em
_004525_.tmp.dll.Kill'em
_004526_.tmp.dll.Kill'em
_004527_.tmp.dll.Kill'em
_004529_.tmp.dll.Kill'em
_004530_.tmp.dll.Kill'em
_004531_.tmp.dll.Kill'em
_004532_.tmp.dll.Kill'em
_004533_.tmp.dll.Kill'em
_004535_.tmp.dll.Kill'em
_004536_.tmp.dll.Kill'em
_004537_.tmp.dll.Kill'em
_004538_.tmp.dll.Kill'em
_004539_.tmp.dll.Kill'em
_004540_.tmp.dll.Kill'em
_004541_.tmp.dll.Kill'em
_004544_.tmp.dll.Kill'em
_004545_.tmp.dll.Kill'em
_004546_.tmp.dll.Kill'em
_004548_.tmp.dll.Kill'em
_004551_.tmp.dll.Kill'em
_004552_.tmp.dll.Kill'em
_004557_.tmp.dll.Kill'em
_004559_.tmp.dll.Kill'em
_004562_.tmp.dll.Kill'em
_004564_.tmp.dll.Kill'em
_004565_.tmp.dll.Kill'em
_004566_.tmp.dll.Kill'em
_004567_.tmp.dll.Kill'em
_004570_.tmp.dll.Kill'em
_004571_.tmp.dll.Kill'em
_004572_.tmp.dll.Kill'em
_004573_.tmp.dll.Kill'em
_004574_.tmp.dll.Kill'em
_004579_.tmp.dll.Kill'em
==============
host file OK !
==============
========
Registry
========
Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Install.exe
Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
============
Disk Cleaned
============
================
Prefetch cleaned
================
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Bonne Année dans les virus ^^ lol
ca sent pas tres bon , on va verifier un truc :
▶ Télécharge : Gmer (by Przemyslaw Gmerek)
▶ Dezippe gmer ,cliques sur l'onglet rootkit,lances le scan,des lignes rouges vont apparaitre.
▶ Les lignes rouges indiquent la presence d'un rootkit.Postes moi le rapport gmer (cliques sur copy,puis vas dans demarrer ,puis ouvres le bloc note,vas dans edition et cliques sur coller,le rapport gmer va apparaitre,postes moi le)
Ensuite
▶ sur les lignes rouge:
▶ Services:cliques droit delete service
▶ Process:cliques droit kill process
▶ Adl ,file:cliques droit delete files
ca sent pas tres bon , on va verifier un truc :
▶ Télécharge : Gmer (by Przemyslaw Gmerek)
▶ Dezippe gmer ,cliques sur l'onglet rootkit,lances le scan,des lignes rouges vont apparaitre.
▶ Les lignes rouges indiquent la presence d'un rootkit.Postes moi le rapport gmer (cliques sur copy,puis vas dans demarrer ,puis ouvres le bloc note,vas dans edition et cliques sur coller,le rapport gmer va apparaitre,postes moi le)
Ensuite
▶ sur les lignes rouge:
▶ Services:cliques droit delete service
▶ Process:cliques droit kill process
▶ Adl ,file:cliques droit delete files
Bonjour, Bonne Année aussi, merci.
Je suis en train de procéder au scan après plusieurs essais infructieux (plantage) c'est très long (ça fait bien 4 ou 5 heures et ça continue) et je n'ai pas eu les lignes rouges après avoir sélectionné rootkit / mallware puis scan.
C'est bon quand même ?
Je suis en train de procéder au scan après plusieurs essais infructieux (plantage) c'est très long (ça fait bien 4 ou 5 heures et ça continue) et je n'ai pas eu les lignes rouges après avoir sélectionné rootkit / mallware puis scan.
C'est bon quand même ?
oui et rien n'indique la progression. J'ai dû desactiver l'anti virus et le pare feu pour le lancer.
hello
▶ Télécharge FindyKill de Chiquitine29 sur ton bureau :
http://pagesperso-orange.fr/NosTools/Chiquitine29/Setup.exe
! Déconnecte toi et ferme toutes applications en cours !
▶ Double clique (clic droit "en tant qu'administrateur" pour Vista) sur "FindyKill.exe" pour lancer l'installation et laisse les paramètres d'instalation par défaut .
▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
▶ Double-clique (clic droit "en tant qu'administrateur" pour Vista)sur le raccourci FindyKill qui est sur ton bureau pour lancer l'outil .
▶ Au menu principal choisis l'option " F " pour français et tape sur [entrée] .
▶ Au second menu Choisis l'option " 1 " (recherche) et tape sur [entrée]
▶ Laisse travailler l'outil et ne touche à rien ...
▶ Poste le rapport qui apparait à la fin , sur le forum ...
( le rapport est sauvegardé aussi sous C:\FindyKill.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
▶ Télécharge FindyKill de Chiquitine29 sur ton bureau :
http://pagesperso-orange.fr/NosTools/Chiquitine29/Setup.exe
! Déconnecte toi et ferme toutes applications en cours !
▶ Double clique (clic droit "en tant qu'administrateur" pour Vista) sur "FindyKill.exe" pour lancer l'installation et laisse les paramètres d'instalation par défaut .
▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
▶ Double-clique (clic droit "en tant qu'administrateur" pour Vista)sur le raccourci FindyKill qui est sur ton bureau pour lancer l'outil .
▶ Au menu principal choisis l'option " F " pour français et tape sur [entrée] .
▶ Au second menu Choisis l'option " 1 " (recherche) et tape sur [entrée]
▶ Laisse travailler l'outil et ne touche à rien ...
▶ Poste le rapport qui apparait à la fin , sur le forum ...
( le rapport est sauvegardé aussi sous C:\FindyKill.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
bonsoir,
je vais réessayer GMER et je t'envoie le rapport si ça fonctionne.
voici celui de findykill.
merci.
############################## | FindyKill V5.023 |
# User : SYLVIE (Administrateurs) # SAMSUNG-F892200
# Update on 31/12/2009 by El Desaparecido
# Start at: 22:16:27 | 05/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com
# Genuine Intel(R) CPU T2250 @ 1.73GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Disabled
# AV : Bitdefender Antivirus 8.0 [ Enabled | Updated ]
# FW : Bitdefender Firewall[ Enabled ]8.0
# C:\ # Disque fixe local # 86,05 Go (47,07 Go free) # NTFS
# D:\ # Disque CD-ROM
# F:\ # Disque amovible # 961,97 Mo (0,81 Mo free) # FAT
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
C:\Program Files\Samsung\DisplayManager\DisplayManager.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Samsung\DisplayManager\dmhkcore.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\SAMSUNG\MagicKBD\MagicKBD.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe
C:\Documents and Settings\SYLVIE\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | C: |
################## | C:\WINDOWS |
################## | C:\WINDOWS\system32 |
################## | C:\WINDOWS\system32\drivers |
################## | C:\Documents and Settings\SYLVIE\Application Data |
################## | Temporary Internet Files |
################## | Registre / Clés infectieuses |
################## | Etat / Services / Informations |
# Affichage des fichiers cachés : OK
# Mode sans echec : OK
# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
# Ip6Fw -> Start = 3 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )
################## | Cracks / Keygens / Serials |
################## | ! Fin du rapport # FindyKill V5.023 ! |
je vais réessayer GMER et je t'envoie le rapport si ça fonctionne.
voici celui de findykill.
merci.
############################## | FindyKill V5.023 |
# User : SYLVIE (Administrateurs) # SAMSUNG-F892200
# Update on 31/12/2009 by El Desaparecido
# Start at: 22:16:27 | 05/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com
# Genuine Intel(R) CPU T2250 @ 1.73GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Disabled
# AV : Bitdefender Antivirus 8.0 [ Enabled | Updated ]
# FW : Bitdefender Firewall[ Enabled ]8.0
# C:\ # Disque fixe local # 86,05 Go (47,07 Go free) # NTFS
# D:\ # Disque CD-ROM
# F:\ # Disque amovible # 961,97 Mo (0,81 Mo free) # FAT
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Samsung\Samsung EDS\EDSAgent.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
C:\Program Files\Samsung\Samsung Battery Manager\BatteryManager.exe
C:\Program Files\Samsung\DisplayManager\DisplayManager.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Samsung\DisplayManager\dmhkcore.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\SAMSUNG\MagicKBD\MagicKBD.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe
C:\Documents and Settings\SYLVIE\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | C: |
################## | C:\WINDOWS |
################## | C:\WINDOWS\system32 |
################## | C:\WINDOWS\system32\drivers |
################## | C:\Documents and Settings\SYLVIE\Application Data |
################## | Temporary Internet Files |
################## | Registre / Clés infectieuses |
################## | Etat / Services / Informations |
# Affichage des fichiers cachés : OK
# Mode sans echec : OK
# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
# Ip6Fw -> Start = 3 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )
################## | Cracks / Keygens / Serials |
################## | ! Fin du rapport # FindyKill V5.023 ! |
########### [ Option 2 ( Suppression ) ]
▶ Déconnecte toi et ferme toutes application en cours ( navigateur compris ) .
▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
▶ Relance "FindyKill" (clic droit "en tant qu'administrateur" pour Vista): au menu principal choisis l'option " F " pour français et tape sur [entrée] .
▶ Au second menu choisis l'option 2 (suppression) et tape sur [entrée]
▶ Le pc va redémarrer automatiquement ...
▶ le programme va travailler , ne touche à rien ... , ton bureau ne sera pas accessible c est normal !
▶ Poste le rapport qui apparait à la fin ( le rapport est sauvegardé aussi sous C:\FindyKill.txt )
▶ Si le Bureau ne réapparait pas, presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tape explorer.exe et valide
▶ Déconnecte toi et ferme toutes application en cours ( navigateur compris ) .
▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
▶ Relance "FindyKill" (clic droit "en tant qu'administrateur" pour Vista): au menu principal choisis l'option " F " pour français et tape sur [entrée] .
▶ Au second menu choisis l'option 2 (suppression) et tape sur [entrée]
▶ Le pc va redémarrer automatiquement ...
▶ le programme va travailler , ne touche à rien ... , ton bureau ne sera pas accessible c est normal !
▶ Poste le rapport qui apparait à la fin ( le rapport est sauvegardé aussi sous C:\FindyKill.txt )
▶ Si le Bureau ne réapparait pas, presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tape explorer.exe et valide
Bonjour,
1) Voilà le rapport Findykill, ça a planté une première fois puis ça a marché.
############################## | FindyKill V5.023 |
# User : SYLVIE (Administrateurs) # SAMSUNG-F892200
# Update on 31/12/2009 by El Desaparecido
# Start at: 14:35:14 | 06/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com
# Genuine Intel(R) CPU T2250 @ 1.73GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Disabled
# AV : Bitdefender Antivirus 8.0 [ Enabled | Updated ]
# FW : Bitdefender Firewall[ Enabled ]8.0
# C:\ # Disque fixe local # 86,05 Go (47,16 Go free) # NTFS
# D:\ # Disque CD-ROM
# F:\ # Disque amovible # 961,97 Mo (0,81 Mo free) # FAT
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Samsung\Samsung Update Plus\SLUBackgroundService.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | C: |
################## | C:\WINDOWS |
################## | C:\WINDOWS\system32 |
################## | C:\WINDOWS\system32\drivers |
################## | C:\Documents and Settings\SYLVIE\Application Data |
################## | Autres suppressions ... |
################## | Temporary Internet Files |
################## | Registre / Clés infectieuses |
################## | Etat / Services / Informations |
# Mode sans echec : OK
# Affichage des fichiers cachés : OK
# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 2 ( Good = 2 | Bad = 4 )
# Ip6Fw -> Start = 2 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )
################## | PEH ... |
################## | Cracks / Keygens / Serials |
################## | ! Fin du rapport # FindyKill V5.023 ! |
2) J'ai relancé GMER et j'ai enfin le rapport mais il n'y a pas eu de lignes rouges, mon pc a mis beaucoup de temps pour le copier et je n'ai pas pu accéder aux dernières étapes (service=>delate....).
A toutes fins utiles voici le rapport que j'ai sauvegardé :
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-06 07:25:04
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\SYLVIE\LOCALS~1\Temp\uwpiapod.sys
---- System - GMER 1.0.15 ----
SSDT \??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys (BitDefender Self Protection Driver/BitDefender S.R.L.) ZwOpenProcess [0xF6D98B4C]
SSDT \??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys (BitDefender Self Protection Driver/BitDefender S.R.L.) ZwOpenThread [0xF6D98C3A]
SSDT \??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys (BitDefender Self Protection Driver/BitDefender S.R.L.) ZwTerminateProcess [0xF6D98AB0]
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [02782EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [02782C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [02782C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [02782C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [02262EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [02262C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [02262C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [02262C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [003D2EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [003D2C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [003D2C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [003D2C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtCreateFile] [00802EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDeviceIoControlFile] [00802C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtClose] [00802C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDuplicateObject] [00802C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00802EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00802C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00802C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00802C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [01A32EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [01A32C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [01A32C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [01A32C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtCreateFile] [00802EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDeviceIoControlFile] [00802C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtClose] [00802C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDuplicateObject] [00802C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Udfs \UdfsCdRom BsUDF.SYS (UDF File System Driver (Windows2000)/CyberLink Corporation.)
Device \FileSystem\Udfs \UdfsDisk BsUDF.SYS (UDF File System Driver (Windows2000)/CyberLink Corporation.)
AttachedDevice \Driver\Tcpip \Device\Ip bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \Driver\Tcpip \Device\Udp bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \Driver\Tcpip \Device\RawIp bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
Device \FileSystem\Cdfs \Cdfs BsUDF.SYS (UDF File System Driver (Windows2000)/CyberLink Corporation.)
---- EOF - GMER 1.0.15 ----
Merci encore de ton aide.
1) Voilà le rapport Findykill, ça a planté une première fois puis ça a marché.
############################## | FindyKill V5.023 |
# User : SYLVIE (Administrateurs) # SAMSUNG-F892200
# Update on 31/12/2009 by El Desaparecido
# Start at: 14:35:14 | 06/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com
# Genuine Intel(R) CPU T2250 @ 1.73GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Disabled
# AV : Bitdefender Antivirus 8.0 [ Enabled | Updated ]
# FW : Bitdefender Firewall[ Enabled ]8.0
# C:\ # Disque fixe local # 86,05 Go (47,16 Go free) # NTFS
# D:\ # Disque CD-ROM
# F:\ # Disque amovible # 961,97 Mo (0,81 Mo free) # FAT
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Samsung\Samsung Update Plus\SLUBackgroundService.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\samsung\Samsung Network Manager\SNMWLANService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | C: |
################## | C:\WINDOWS |
################## | C:\WINDOWS\system32 |
################## | C:\WINDOWS\system32\drivers |
################## | C:\Documents and Settings\SYLVIE\Application Data |
################## | Autres suppressions ... |
################## | Temporary Internet Files |
################## | Registre / Clés infectieuses |
################## | Etat / Services / Informations |
# Mode sans echec : OK
# Affichage des fichiers cachés : OK
# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 2 ( Good = 2 | Bad = 4 )
# Ip6Fw -> Start = 2 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )
################## | PEH ... |
################## | Cracks / Keygens / Serials |
################## | ! Fin du rapport # FindyKill V5.023 ! |
2) J'ai relancé GMER et j'ai enfin le rapport mais il n'y a pas eu de lignes rouges, mon pc a mis beaucoup de temps pour le copier et je n'ai pas pu accéder aux dernières étapes (service=>delate....).
A toutes fins utiles voici le rapport que j'ai sauvegardé :
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-06 07:25:04
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\SYLVIE\LOCALS~1\Temp\uwpiapod.sys
---- System - GMER 1.0.15 ----
SSDT \??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys (BitDefender Self Protection Driver/BitDefender S.R.L.) ZwOpenProcess [0xF6D98B4C]
SSDT \??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys (BitDefender Self Protection Driver/BitDefender S.R.L.) ZwOpenThread [0xF6D98C3A]
SSDT \??\C:\Program Files\BitDefender\BitDefender 2008\bdselfpr.sys (BitDefender Self Protection Driver/BitDefender S.R.L.) ZwTerminateProcess [0xF6D98AB0]
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [02782EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [02782C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [02782C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Logitech\QuickCam10\QuickCam10.exe[208] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [02782C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [02262EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [02262C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [02262C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\WINDOWS\Explorer.EXE[336] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [02262C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [003D2EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [003D2C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [003D2C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe[600] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [003D2C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtCreateFile] [00802EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDeviceIoControlFile] [00802C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtClose] [00802C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[1352] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDuplicateObject] [00802C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00802EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00802C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00802C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Documents and Settings\SYLVIE\Bureau\gmer.exe[1700] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00802C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [01A32EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [01A32C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [01A32C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\Windows Live\Messenger\msnmsgr.exe[2080] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [01A32C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtCreateFile] [00802EC0] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDeviceIoControlFile] [00802C30] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtClose] [00802C90] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
IAT C:\Program Files\ATI Technologies\ATI.ACE\cli.exe[3156] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDuplicateObject] [00802C60] C:\Program Files\Fichiers communs\Logishrd\LVMVFM\LVPrcInj.dll (Camera Helper Library./Logitech Inc.)
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Udfs \UdfsCdRom BsUDF.SYS (UDF File System Driver (Windows2000)/CyberLink Corporation.)
Device \FileSystem\Udfs \UdfsDisk BsUDF.SYS (UDF File System Driver (Windows2000)/CyberLink Corporation.)
AttachedDevice \Driver\Tcpip \Device\Ip bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \Driver\Tcpip \Device\Udp bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \Driver\Tcpip \Device\RawIp bdftdif.sys (BitDefender Firewall TDI Filter Driver/BitDefender SRL)
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
Device \FileSystem\Cdfs \Cdfs BsUDF.SYS (UDF File System Driver (Windows2000)/CyberLink Corporation.)
---- EOF - GMER 1.0.15 ----
Merci encore de ton aide.
Bonjour,
Le lien pour OTL : http://www.cijoint.fr/cjlink.php?file=cj201001/cijppokMYf.txt
Le lien pour Extras : http://www.cijoint.fr/cjlink.php?file=cj201001/cijzFwd3FN.txt
Bonne journée.
Le lien pour OTL : http://www.cijoint.fr/cjlink.php?file=cj201001/cijppokMYf.txt
Le lien pour Extras : http://www.cijoint.fr/cjlink.php?file=cj201001/cijzFwd3FN.txt
Bonne journée.
▶ Clique sur le menu Demarrer /Panneau de configuration/Options des dossiers/ puis dans l'onglet Affichage
* - Coche Afficher les fichiers et dossiers cachés
* - Décoche Masquer les extensions des fichiers dont le type est connu
* - Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
▶ clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Fais analyser le(s) fichier(s) suivants sur Virustotal :
Virus Total
* Clique sur Parcourir en haut, choisis Poste de travail et cherche ces fichiers :
C:\WINDOWS\Run32A60.mch
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
* Une nouvelle fenêtre de ton navigateur va apparaître
* Clique alors sur les deux fleches
* Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
* Enfin colle le résultat dans ta prochaine réponse.
Note : Pour analyser un autre fichier, clique en bas sur Autre fichier.
ensuite :
▶ Double clic sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous Customs Scans/Fixes :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15
O4 - HKLM..\Run: [] File not found
O18 - Protocol\Handler\bw+0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw+0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw-0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw00 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw00s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw-0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw10 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw10s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw20 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw20s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw30 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw30s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw40 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw40s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw50 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw50s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw60 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw60s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw70 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw70s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw80 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw80s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw90 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw90s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwa0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwa0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwb0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwb0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwc0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwc0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwd0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwd0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwe0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwe0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwf0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwf0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwfile-8876480 {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwg0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwg0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwh0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwh0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwi0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwi0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwj0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwj0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwk0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwk0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwl0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwl0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwm0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwm0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwn0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwn0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwo0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwo0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwp0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwp0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwq0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwq0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwr0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwr0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bws0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bws0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwt0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwt0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwu0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwu0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwv0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwv0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bww0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bww0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwx0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwx0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwy0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwy0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwz0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwz0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=-
"IndexSearch"=-
"PaperPort PTD"=-
"RemoteControl"=-
"RTHDCPL"=-
"SetDefPrt"=-
"SSBkgdUpdate"=-
"TkBellExe"=-
:files
C:\Documents and Settings\SYLVIE\Local Settings\Temp\IadHide5.dll
:commands
[emptytemp]
[start explorer]
[reboot]
▶ Clique sur RunFix pour lancer la suppression.
▶ Poste le rapport.
* - Coche Afficher les fichiers et dossiers cachés
* - Décoche Masquer les extensions des fichiers dont le type est connu
* - Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
▶ clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Fais analyser le(s) fichier(s) suivants sur Virustotal :
Virus Total
* Clique sur Parcourir en haut, choisis Poste de travail et cherche ces fichiers :
C:\WINDOWS\Run32A60.mch
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
* Une nouvelle fenêtre de ton navigateur va apparaître
* Clique alors sur les deux fleches
* Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
* Enfin colle le résultat dans ta prochaine réponse.
Note : Pour analyser un autre fichier, clique en bas sur Autre fichier.
ensuite :
▶ Double clic sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous Customs Scans/Fixes :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15
O4 - HKLM..\Run: [] File not found
O18 - Protocol\Handler\bw+0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw+0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw-0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw00 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw00s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw-0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw10 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw10s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw20 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw20s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw30 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw30s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw40 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw40s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw50 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw50s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw60 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw60s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw70 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw70s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw80 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw80s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw90 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw90s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwa0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwa0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwb0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwb0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwc0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwc0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwd0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwd0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwe0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwe0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwf0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwf0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwfile-8876480 {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwg0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwg0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwh0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwh0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwi0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwi0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwj0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwj0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwk0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwk0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwl0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwl0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwm0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwm0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwn0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwn0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwo0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwo0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwp0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwp0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwq0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwq0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwr0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwr0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bws0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bws0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwt0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwt0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwu0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwu0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwv0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwv0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bww0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bww0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwx0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwx0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwy0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwy0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwz0 {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwz0s {1019941f-f5b6-4f9c-b065-db5240927187} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=-
"IndexSearch"=-
"PaperPort PTD"=-
"RemoteControl"=-
"RTHDCPL"=-
"SetDefPrt"=-
"SSBkgdUpdate"=-
"TkBellExe"=-
:files
C:\Documents and Settings\SYLVIE\Local Settings\Temp\IadHide5.dll
:commands
[emptytemp]
[start explorer]
[reboot]
▶ Clique sur RunFix pour lancer la suppression.
▶ Poste le rapport.
Fichier Run32A60.mch reçu le 2010.01.09 16:07:33 (UTC)
Antivirus Version Dernière mise à jour Résultat
a-squared 4.5.0.48 2010.01.09 -
AhnLab-V3 5.0.0.2 2010.01.09 -
AntiVir 7.9.1.130 2010.01.08 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.09 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.09 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
Comodo 3514 2010.01.08 -
DrWeb 5.0.1.12222 2010.01.09 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.08 -
F-Secure 9.0.15370.0 2010.01.09 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.09 -
Ikarus T3.1.1.80.0 2010.01.09 -
Jiangmin 13.0.900 2010.01.09 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.09 -
McAfee 5856 2010.01.09 -
McAfee+Artemis 5856 2010.01.09 -
McAfee-GW-Edition 6.8.5 2010.01.09 -
Microsoft 1.5302 2010.01.09 -
NOD32 4756 2010.01.09 -
Norman 6.04.03 2010.01.09 -
nProtect 2009.1.8.0 2010.01.09 -
Panda 10.0.2.2 2010.01.09 -
PCTools 7.0.3.5 2010.01.09 -
Prevx 3.0 2010.01.09 -
Rising 22.29.05.04 2010.01.09 -
Sophos 4.49.0 2010.01.09 -
Sunbelt 3.2.1858.2 2010.01.09 -
Symantec 20091.2.0.41 2010.01.09 -
TheHacker 6.5.0.3.143 2010.01.09 -
TrendMicro 9.120.0.1004 2010.01.09 -
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -
Information additionnelle
File size: 33850 bytes
MD5...: 601a9e1831eb35d9c1a5c68494eb80fe
SHA1..: 882ae34346be9e33bc1c44f1f51386759b6392b5
SHA256: 7be8ae544fddc325fa4a86bda6045c5fc036b2fb68d3e6af39a4c2d5f1de70ff
ssdeep: 768:4rQX7XsUwmwk5soxtUdtx5/kiiiXDSNc65SRT:rX7XMoxmrx5kiiiTSNcISR<br>T<br>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<br>-
sigcheck:<br>publisher....: n/a<br>copyright....: n/a<br>product......: n/a<br>description..: n/a<br>original name: n/a<br>internal name: n/a<br>file version.: n/a<br>comments.....: n/a<br>signers......: -<br>signing date.: -<br>verified.....: Unsigned<br>
trid..: Unknown!
pdfid.: -
Antivirus Version Dernière mise à jour Résultat
a-squared 4.5.0.48 2010.01.09 -
AhnLab-V3 5.0.0.2 2010.01.09 -
AntiVir 7.9.1.130 2010.01.08 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.09 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.09 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
Comodo 3514 2010.01.08 -
DrWeb 5.0.1.12222 2010.01.09 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.08 -
F-Secure 9.0.15370.0 2010.01.09 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.09 -
Ikarus T3.1.1.80.0 2010.01.09 -
Jiangmin 13.0.900 2010.01.09 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.09 -
McAfee 5856 2010.01.09 -
McAfee+Artemis 5856 2010.01.09 -
McAfee-GW-Edition 6.8.5 2010.01.09 -
Microsoft 1.5302 2010.01.09 -
NOD32 4756 2010.01.09 -
Norman 6.04.03 2010.01.09 -
nProtect 2009.1.8.0 2010.01.09 -
Panda 10.0.2.2 2010.01.09 -
PCTools 7.0.3.5 2010.01.09 -
Prevx 3.0 2010.01.09 -
Rising 22.29.05.04 2010.01.09 -
Sophos 4.49.0 2010.01.09 -
Sunbelt 3.2.1858.2 2010.01.09 -
Symantec 20091.2.0.41 2010.01.09 -
TheHacker 6.5.0.3.143 2010.01.09 -
TrendMicro 9.120.0.1004 2010.01.09 -
Le rapport Virus Total :
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -
Information additionnelle
File size: 33850 bytes
MD5...: 601a9e1831eb35d9c1a5c68494eb80fe
SHA1..: 882ae34346be9e33bc1c44f1f51386759b6392b5
SHA256: 7be8ae544fddc325fa4a86bda6045c5fc036b2fb68d3e6af39a4c2d5f1de70ff
ssdeep: 768:4rQX7XsUwmwk5soxtUdtx5/kiiiXDSNc65SRT:rX7XMoxmrx5kiiiTSNcISR<br>T<br>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<br>-
sigcheck:<br>publisher....: n/a<br>copyright....: n/a<br>product......: n/a<br>description..: n/a<br>original name: n/a<br>internal name: n/a<br>file version.: n/a<br>comments.....: n/a<br>signers......: -<br>signing date.: -<br>verified.....: Unsigned<br>
trid..: Unknown!
pdfid.: -
Antivirus Version Dernière mise à jour Résultat
a-squared 4.5.0.48 2010.01.09 -
AhnLab-V3 5.0.0.2 2010.01.09 -
AntiVir 7.9.1.130 2010.01.08 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.09 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.09 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
Comodo 3514 2010.01.08 -
DrWeb 5.0.1.12222 2010.01.09 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.08 -
F-Secure 9.0.15370.0 2010.01.09 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.09 -
Ikarus T3.1.1.80.0 2010.01.09 -
Jiangmin 13.0.900 2010.01.09 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.09 -
McAfee 5856 2010.01.09 -
McAfee+Artemis 5856 2010.01.09 -
McAfee-GW-Edition 6.8.5 2010.01.09 -
Microsoft 1.5302 2010.01.09 -
NOD32 4756 2010.01.09 -
Norman 6.04.03 2010.01.09 -
nProtect 2009.1.8.0 2010.01.09 -
Panda 10.0.2.2 2010.01.09 -
PCTools 7.0.3.5 2010.01.09 -
Prevx 3.0 2010.01.09 -
Rising 22.29.05.04 2010.01.09 -
Sophos 4.49.0 2010.01.09 -
Sunbelt 3.2.1858.2 2010.01.09 -
Symantec 20091.2.0.41 2010.01.09 -
TheHacker 6.5.0.3.143 2010.01.09 -
TrendMicro 9.120.0.1004 2010.01.09 -
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -
Information additionnelle
File size: 33850 bytes
MD5...: 601a9e1831eb35d9c1a5c68494eb80fe
SHA1..: 882ae34346be9e33bc1c44f1f51386759b6392b5
SHA256: 7be8ae544fddc325fa4a86bda6045c5fc036b2fb68d3e6af39a4c2d5f1de70ff
ssdeep: 768:4rQX7XsUwmwk5soxtUdtx5/kiiiXDSNc65SRT:rX7XMoxmrx5kiiiTSNcISR<br>T<br>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<br>-
sigcheck:<br>publisher....: n/a<br>copyright....: n/a<br>product......: n/a<br>description..: n/a<br>original name: n/a<br>internal name: n/a<br>file version.: n/a<br>comments.....: n/a<br>signers......: -<br>signing date.: -<br>verified.....: Unsigned<br>
trid..: Unknown!
pdfid.: -
Antivirus Version Dernière mise à jour Résultat
a-squared 4.5.0.48 2010.01.09 -
AhnLab-V3 5.0.0.2 2010.01.09 -
AntiVir 7.9.1.130 2010.01.08 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.09 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.09 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
Comodo 3514 2010.01.08 -
DrWeb 5.0.1.12222 2010.01.09 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.08 -
F-Secure 9.0.15370.0 2010.01.09 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.09 -
Ikarus T3.1.1.80.0 2010.01.09 -
Jiangmin 13.0.900 2010.01.09 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.09 -
McAfee 5856 2010.01.09 -
McAfee+Artemis 5856 2010.01.09 -
McAfee-GW-Edition 6.8.5 2010.01.09 -
Microsoft 1.5302 2010.01.09 -
NOD32 4756 2010.01.09 -
Norman 6.04.03 2010.01.09 -
nProtect 2009.1.8.0 2010.01.09 -
Panda 10.0.2.2 2010.01.09 -
PCTools 7.0.3.5 2010.01.09 -
Prevx 3.0 2010.01.09 -
Rising 22.29.05.04 2010.01.09 -
Sophos 4.49.0 2010.01.09 -
Sunbelt 3.2.1858.2 2010.01.09 -
Symantec 20091.2.0.41 2010.01.09 -
TheHacker 6.5.0.3.143 2010.01.09 -
TrendMicro 9.120.0.1004 2010.01.09 -
Le rapport Virus Total :
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -
Information additionnelle
File size: 33850 bytes
MD5...: 601a9e1831eb35d9c1a5c68494eb80fe
SHA1..: 882ae34346be9e33bc1c44f1f51386759b6392b5
SHA256: 7be8ae544fddc325fa4a86bda6045c5fc036b2fb68d3e6af39a4c2d5f1de70ff
ssdeep: 768:4rQX7XsUwmwk5soxtUdtx5/kiiiXDSNc65SRT:rX7XMoxmrx5kiiiTSNcISR<br>T<br>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<br>-
sigcheck:<br>publisher....: n/a<br>copyright....: n/a<br>product......: n/a<br>description..: n/a<br>original name: n/a<br>internal name: n/a<br>file version.: n/a<br>comments.....: n/a<br>signers......: -<br>signing date.: -<br>verified.....: Unsigned<br>
trid..: Unknown!
pdfid.: -
Le rapport OTL du jour :
Merci !
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
No active process named iexplore.exe was found!
Process firefox.exe killed successfully!
Process msnmsgr.exe killed successfully!
No active process named Teatimer.exe was found!
========== OTL ==========
Prefs.js: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15 removed from extensions.enabledItems
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw+0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw+0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw-0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw00\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw00s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw-0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw10\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw10s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw20\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw20s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw30\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw30s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw40\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw40s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw50\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw50s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw60\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw60s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw70\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw70s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw80\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw80s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw90\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw90s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwa0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwa0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwb0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwb0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwc0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwc0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwd0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwd0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwe0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwe0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwf0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwf0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwfile-8876480\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwg0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwg0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwh0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwh0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwi0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwi0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwj0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwj0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwk0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwk0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwl0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwl0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwm0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwm0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwn0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwn0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwo0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwo0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwp0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwp0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwq0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwq0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwr0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwr0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bws0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bws0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwt0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwt0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwu0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwu0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwv0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwv0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bww0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bww0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwx0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwx0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwy0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwy0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwz0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwz0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\IndexSearch deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PaperPort PTD deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\RemoteControl deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\RTHDCPL deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SetDefPrt deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SSBkgdUpdate deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
========== FILES ==========
C:\Documents and Settings\SYLVIE\Local Settings\Temp\IadHide5.dll moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 50403 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: SYLVIE
->Temp folder emptied: 5996157 bytes
->Temporary Internet Files folder emptied: 49286 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 83420318 bytes
->Google Chrome cache emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 4249292 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
Windows Temp folder emptied: 50123 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 23973272 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 113,00 mb
OTL by OldTimer - Version 3.1.22.0 log created on 01092010_172204
Merci !
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
No active process named iexplore.exe was found!
Process firefox.exe killed successfully!
Process msnmsgr.exe killed successfully!
No active process named Teatimer.exe was found!
========== OTL ==========
Prefs.js: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15 removed from extensions.enabledItems
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw+0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw+0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw-0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw00\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw00s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw-0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw10\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw10s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw20\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw20s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw30\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw30s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw40\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw40s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw50\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw50s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw60\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw60s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw70\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw70s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw80\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw80s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw90\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bw90s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwa0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwa0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwb0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwb0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwc0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwc0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwd0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwd0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwe0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwe0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwf0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwf0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwfile-8876480\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwg0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwg0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwh0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwh0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwi0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwi0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwj0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwj0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwk0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwk0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwl0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwl0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwm0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwm0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwn0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwn0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwo0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwo0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwp0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwp0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwq0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwq0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwr0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwr0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bws0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bws0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwt0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwt0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwu0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwu0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwv0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwv0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bww0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bww0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwx0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwx0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwy0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwy0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwz0\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\bwz0s\ deleted successfully.
Invalid CLSID key: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
File C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\IndexSearch deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PaperPort PTD deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\RemoteControl deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\RTHDCPL deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SetDefPrt deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SSBkgdUpdate deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe deleted successfully.
========== FILES ==========
C:\Documents and Settings\SYLVIE\Local Settings\Temp\IadHide5.dll moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 50403 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: SYLVIE
->Temp folder emptied: 5996157 bytes
->Temporary Internet Files folder emptied: 49286 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 83420318 bytes
->Google Chrome cache emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 4249292 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
Windows Temp folder emptied: 50123 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 23973272 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 113,00 mb
OTL by OldTimer - Version 3.1.22.0 log created on 01092010_172204